CISA Issues Alert About CentreStack’s Embedded MachineKey Weakness Facilitating RCE Assaults
The Security and Infrastructure Protection Agency (SIPA) of the United States sounded the alarm on Tuesday regarding a severe security loophole affecting Gladinet CentreStack which has been included in its Documented Exploited Weak Points (DEWP) directory, with proof of ongoing exploitation in live environments.
This weakness, recognized as CVE-2025-30406 (CVSS rating: 9.0), revolves around a pre-set cipher key that could be exploited for executing remote attacks
This weakness, recognized as CVE-2025-30406 (CVSS rating: 9.0), revolves around a pre-set cipher key that could be exploited for executing remote attacks
