When using domain users as BRAIN2 users, communication with Active Directory services is unencrypted. This can lead to the interception of authentication data and compromise confidentiality.
History

Mon, 03 Nov 2025 10:45:00 +0000

Type Values Removed Values Added
First Time appeared Bizerba
Bizerba brain2
Microsoft
Microsoft active Directory
Vendors & Products Bizerba
Bizerba brain2
Microsoft
Microsoft active Directory

Fri, 31 Oct 2025 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 31 Oct 2025 16:00:00 +0000

Type Values Removed Values Added
Description When using domain users as BRAIN2 users, communication with Active Directory services is unencrypted. This can lead to the interception of authentication data and compromise confidentiality.
Title Unencrypted communication to Active Directory services
Weaknesses CWE-319
References
Metrics cvssV3_1

{'score': 8.4, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: bizerba

Published: 2025-10-31T15:49:54.429Z

Updated: 2025-10-31T17:44:27.867Z

Reserved: 2025-10-30T14:08:50.565Z

Link: CVE-2025-12508

cve-icon Vulnrichment

Updated: 2025-10-31T17:44:24.024Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-10-31T16:15:39.600

Modified: 2025-11-04T15:41:31.450

Link: CVE-2025-12508

cve-icon Redhat

No data.