CVE-2025-10221
EUVD-2025-2754310.09.2025, 13:15
Insertion of Sensitive Information into Log File (CWE-532) in the ARP Agent component in AxxonSoft Axxon One / AxxonNet / C-WerkNet 2.0.4 and earlier on Windows platforms allows a local attacker to obtain plaintext credentials via reading TRACE log files containing serialized JSON with passwords.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| axxonsoft | axxon_one | 𝑥 ≤ 2.0.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration