CVE-2025-58384

CRITICAL

DOXENSE WATCHDOC <6.1.1.5332 - Code Injection

Title source: llm

Description

In DOXENSE WATCHDOC before 6.1.1.5332, Deserialization of Untrusted Data can lead to remote code execution through the .NET Remoting library in the Watchdoc administration interface.

Scores

CVSS v3 10.0
EPSS 0.0130
EPSS Percentile 79.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Classification

CWE
CWE-502
Status draft

Timeline

Published Sep 26, 2025
Tracked Since Feb 18, 2026