CVE-2025-12508
Severity CVSS v4.0:
Pending analysis
Type:
CWE-319
Cleartext Transmission of Sensitive Information
Publication date:
31/10/2025
Last modified:
04/11/2025
Description
When using domain users as BRAIN2 users, communication with Active Directory services is unencrypted. This can lead to the interception of authentication data and compromise confidentiality.
Impact
Base Score 3.x
8.40
Severity 3.x
HIGH



