CVE-2025-10227

Publication date

2025-09-10 12:39:12

Family

AxxonSoft

State

PUBLISHED

Description

Missing Encryption of Sensitive Data (CWE-311) in the Object Archive component in AxxonSoft Axxon OneĀ (C-Werk) before 2.0.8 on Windows and Linux allows a local attacker with access to exported storage or stolen physical drives to extract sensitive archive data in plaintext via lack of encryption at rest.