CVE-2025-58384

CRITICAL

DOXENSE WATCHDOC <6.1.1.5332 - Code Injection

Title source: llm
STIX 2.1

Description

In DOXENSE WATCHDOC before 6.1.1.5332, Deserialization of Untrusted Data can lead to remote code execution through the .NET Remoting library in the Watchdoc administration interface.

References (2)

Core 2

Scores

CVSS v3 10.0
EPSS 0.0066
EPSS Percentile 46.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-502
Status published
Published Sep 26, 2025
Tracked Since Feb 18, 2026