AxxonSoft Axxon One VMS Sensitive Information Exposure Vulnerability
Vulnerability
A vulnerability exists in AxxonSoft Axxon One VMS versions 2.0.0 through 2.0.1 on Windows, allowing local attackers to access sensitive licensing information. This includes timestamps, license states, and registry values, through diagnostic export files created by the built-in troubleshooting tool.
Impact
Exploitation of this vulnerability could lead to unauthorized access to licensing-related information, which could be used to manipulate or misuse the software's licensing system.
Remediation
Users are advised to upgrade to Axxon One VMS version 2.0.2 or later. Diagnostic files previously exported and shared with third parties should be reviewed and deleted if necessary.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
