Home
HIGH: 8.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:HDefault status
affected
10.19.0.0 (custom)
unaffected
Description
A hardcoded key in Ivanti Workspace Control before version 10.19.0.0 allows a local authenticated attacker to decrypt stored SQL credentials.
Problem types
CWE-321: Use of Hard-coded Cryptographic Key
Product status
10.19.0.0 (custom)
References
forums.ivanti.com/...-5353-CVE-CVE-2025-22463-CVE-2025-22455