Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 27 Oct 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Easywork
Easywork easywork |
|
| Vendors & Products |
Easywork
Easywork easywork |
Mon, 27 Oct 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-316 | |
| Metrics |
cvssV3_1
|
Mon, 27 Oct 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Easywork Enterprise 2.1.3.354 is vulnerable to Cleartext Storage of Sensitive Information in Memory. The application leaves valid device-bound license keys in process memory after a failed activation attempt. The keys can be obtained by attaching a debugger or analyzing the process/memory dump and then they can be used to activate the software on the same machine without purchasing. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-10-27T19:56:13.426Z
Reserved: 2025-09-26T00:00:00.000Z
Link: CVE-2025-60791
Updated: 2025-10-27T19:55:25.117Z
Status : Received
Published: 2025-10-27T16:15:42.510
Modified: 2025-10-27T20:15:53.910
Link: CVE-2025-60791
No data.
OpenCVE Enrichment
Updated: 2025-10-27T22:09:52Z