CNNVD-202512-2686 Information

CNNVD ID

CNNVD-202512-2686

CVE-2025-34180

  • CNNVD Published: 2025-12-15

Description (Chinese)

NetSupport Manager是NetSupport Manager公司的一款远程控制软件。 NetSupport Manager 14.12.0001之前版本存在安全漏洞,该漏洞源于使用可逆编码方案存储共享Gateway Key,可能导致未经授权访问。

Description (English)

NetSupport Manager is a remote control software for NetSupport Manager. NetSupport Manager 14.12.0001 had a security loophole, which stemmed from the use of reversible coding programmes to store shared Gateway Key, which could lead to unauthorized access.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

NetSupport Manager

Published

2025-12-15

Last Modified

2026-02-24

References

https://www.vulncheck.com/advisories/netsupport-manager-gateway-key-reversible-encoding-credential-recovery https://kb.netsupportsoftware.com/knowledge-base/updating-and-securing-netsupport-manager/ https://ret2.me/post/2025-12-04-exploiting-netsupport-gateway/ https://access.redhat.com/security/cve/cve-2025-34180

Patch

https://kb.netsupportsoftware.com/knowledge-base/updating-and-securing-netsupport-manager/

Share on: