CNNVD-202509-3573 Information

CNNVD ID

CNNVD-202509-3573

CVE-2025-35041

  • CNNVD Published: 2025-09-22

Description (Chinese)

Airship AI Acropolis是美国Airship AI公司的一个视频与穿蓝旗数据管理平台。 Airship AI Acropolis 10.2.35之前版本、11.0.21之前版本和11.1.9之前版本存在安全漏洞,该漏洞源于允许15分钟内无限次尝试MFA验证,可能导致暴力破解6位数MFA代码。

Description (English)

Airship AI Acropolis is a video and blue flag data management platform for Airship AI in the United States. There is a security loophole in the pre-Airship AI Acropolis 10.2.35, pre-11.0.21 and pre-11.1.9 versions, which stems from the fact that an unlimited number of attempts to test the MFA within 15 minutes may result in the violent break-up of the 6-digit MFA code.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Airship AI

Published

2025-09-22

Last Modified

2026-02-24

References

https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/IT/white/2025/va-25-265-01.json https://www.cve.org/CVERecord?id=CVE-2025-35041

Share on: