CVE-2025-24525
Severity CVSS v4.0:
HIGH
Type:
CWE-321
Use of Hard-coded Cryptographic Key
Publication date:
30/09/2025
Last modified:
02/10/2025
Description
Keysight Ixia Vision has an issue with hardcoded cryptographic material <br />
which may allow an attacker to intercept or decrypt payloads sent to the<br />
device via API calls or user authentication if the end user does not <br />
replace the TLS certificate that shipped with the device. Remediation is<br />
available in Version 6.9.1, released on September 23, 2025.
Impact
Base Score 4.0
8.70
Severity 4.0
HIGH
Base Score 3.x
7.50
Severity 3.x
HIGH



