CVE-2025-48862

Ambiguous wording in the web interface of the ctrlX OS setup mechanism could lead the user to believe that the backup file is encrypted when a password is set. However, only the private key - if available in the backup - is encrypted, while the backup file itself remains unencrypted.
Configurations

No configuration.

History

No history.

Information

Published : 2025-08-14 09:15

Updated : 2025-08-14 13:11


NVD link : CVE-2025-48862

Mitre link : CVE-2025-48862

CVE.ORG link : CVE-2025-48862


JSON object : View

Products Affected

No product.

CWE
CWE-311

Missing Encryption of Sensitive Data

CWE-1104

Use of Unmaintained Third Party Components