Security Advisory

CVE-2025-10225

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-09-10 12:37:15
Last updated 2025-10-08 11:51:39
Assigner AxxonSoft
State PUBLISHED

Description

Improper Restriction of Operations within the Bounds of a Memory Buffer (CWE-119) in the OpenSSL-based session module in AxxonSoft Axxon One (C-Werk) 2.0.6 and earlier on Windows allows a remote attacker under high load conditions to cause application crashes or unpredictable behavior via triggering memory reallocation errors when handling expired session keys.