Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-24678 | Ambiguous wording in the web interface of the ctrlX OS setup mechanism could lead the user to believe that the backup file is encrypted when a password is set. However, only the private key - if available in the backup - is encrypted, while the backup file itself remains unencrypted. |
Sat, 16 Aug 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Bosch
Bosch ctrlx Os |
|
| Vendors & Products |
Bosch
Bosch ctrlx Os |
Thu, 14 Aug 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 14 Aug 2025 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Ambiguous wording in the web interface of the ctrlX OS setup mechanism could lead the user to believe that the backup file is encrypted when a password is set. However, only the private key - if available in the backup - is encrypted, while the backup file itself remains unencrypted. | |
| Weaknesses | CWE-1104 CWE-311 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: bosch
Published:
Updated: 2025-08-14T15:46:38.467Z
Reserved: 2025-05-27T10:45:32.638Z
Link: CVE-2025-48862
Updated: 2025-08-14T15:46:34.434Z
Status : Deferred
Published: 2025-08-14T09:15:26.293
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-48862
No data.
OpenCVE Enrichment
Updated: 2025-08-16T21:41:25Z
EUVD