CVE-2025-67652
BaseFortify
Publication date: 2026-01-22
Last updated on: 2026-01-26
Assigner: ICS-CERT
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-261 | Obscuring a password with a trivial encoding does not protect the password. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability involves exposed credentials within a project file that an attacker with access to the file can exploit. The attacker could impersonate users, escalate privileges, or gain unauthorized access to systems and services. The lack of strong encryption or secure handling increases the risk of such exploitation, making sensitive information vulnerable.
How can this vulnerability impact me? :
The vulnerability can lead to unauthorized access to systems and services, user impersonation, and privilege escalation. This could compromise sensitive information and system integrity, potentially causing operational disruptions or data breaches.