Description

Vulnerability in Best Practical Solutions, LLC's Request Tracker prior to v5.0.8, where the Triple DES (3DES) cryptographic algorithm is used to protect emails sent with S/MIME encryption. Triple DES is considered obsolete and insecure due to its susceptibility to birthday attacks, which could compromise the confidentiality of encrypted messages.

INFO

Published Date :

2025-05-05T11:28:43.668Z

Last Modified :

2025-11-03T19:45:04.026Z

Source :

INCIBE
AFFECTED PRODUCTS

The following products are affected by CVE-2025-2545 vulnerability.

Vendors Products
Best Practical Solutions
  • Request Tracker

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability