In DOXENSE WATCHDOC before 6.1.0.5094, private user puk codes can be disclosed for Active Directory registered users (there is hard-coded and predictable data).
References
| Link | Resource |
|---|---|
| https://doc.doxense.com/Watchdoc/J_Securite/cve-2025-58385.htm | Vendor Advisory |
| https://update.doxense.com/ | Product |
Configurations
History
07 Oct 2025, 18:51
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://doc.doxense.com/Watchdoc/J_Securite/cve-2025-58385.htm - Vendor Advisory | |
| References | () https://update.doxense.com/ - Product | |
| First Time |
Doxense
Doxense watchdoc |
|
| CPE | cpe:2.3:a:doxense:watchdoc:*:*:*:*:*:*:*:* |
26 Sep 2025, 16:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-09-26 16:15
Updated : 2025-10-07 18:51
NVD link : CVE-2025-58385
Mitre link : CVE-2025-58385
CVE.ORG link : CVE-2025-58385
JSON object : View
Products Affected
doxense
- watchdoc
CWE
CWE-798
Use of Hard-coded Credentials
