CVE-2025-22956 - OPSI Windomain Property Disclosure
CVE ID : CVE-2025-22956
Published : Sept. 8, 2025, 2:15 p.m. | 54 minutes ago
Description : OPSI before 4.3 allows any client to retrieve any ProductPropertyState, including those of other clients. This can lead to privilege escalation if any ProductPropertyState contains a secret only intended to be accessible by a subset of clients. One example of this is a domain join account password for the windomain package.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Sept. 8, 2025, 2:15 p.m. | 54 minutes ago
Description : OPSI before 4.3 allows any client to retrieve any ProductPropertyState, including those of other clients. This can lead to privilege escalation if any ProductPropertyState contains a secret only intended to be accessible by a subset of clients. One example of this is a domain join account password for the windomain package.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...