AxxonSoft Axxon One VMS Sensitive Information Exposure Vulnerability

Vulnerability

A vulnerability exists in AxxonSoft Axxon One VMS versions 2.0.0 through 2.0.1 on Windows, allowing local attackers to access sensitive licensing information. This includes timestamps, license states, and registry values, through diagnostic export files created by the built-in troubleshooting tool.

Impact

Exploitation of this vulnerability could lead to unauthorized access to licensing-related information, which could be used to manipulate or misuse the software's licensing system.

Remediation

Users are advised to upgrade to Axxon One VMS version 2.0.2 or later. Diagnostic files previously exported and shared with third parties should be reviewed and deleted if necessary.

Added: Sep 10, 2025, 1:21 PM
Updated: Sep 10, 2025, 1:21 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
3.3
exploitability
3.3
remediation
7.7
relevance
0.5
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.