Missing Encryption of Sensitive Data (CWE-311) in the Object Archive component in AxxonSoft Axxon OneĀ (C-Werk) before 2.0.8 on Windows and Linux allows a local attacker with access to exported storage or stolen physical drives to extract sensitive archive data in plaintext via lack of encryption at rest.
References
Configurations
No configuration.
History
08 Oct 2025, 12:15
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | (en) Missing Encryption of Sensitive Data (CWE-311) in the Object Archive component in AxxonSoft Axxon OneĀ (C-Werk) before 2.0.8 on Windows and Linux allows a local attacker with access to exported storage or stolen physical drives to extract sensitive archive data in plaintext via lack of encryption at rest. |
10 Sep 2025, 13:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-09-10 13:15
Updated : 2025-10-08 12:15
NVD link : CVE-2025-10227
Mitre link : CVE-2025-10227
CVE.ORG link : CVE-2025-10227
JSON object : View
Products Affected
No product.
CWE
CWE-311
Missing Encryption of Sensitive Data
