All 7 CVE vulnerabilities found in AxxonOne C-Werk, with AI-generated Chinese analysis, references, and POCs.
Vendor: AxxonSoft
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-10227 | Lack of Encryption in Object Archive in AxxonSoft Axxon One (C-Werk) before 2.0.8 CWE-311 | 4.6 | Medium | 2025-09-10 |
| CVE-2025-10226 | PostgreSQL Upgrade from v10 to v17.4 in AxxonSoft Axxon One (C-Werk) 2.0.8 and earlier to Address Multiple Vulnerabilities CWE-1395 | 9.8 | Critical | 2025-09-10 |
| CVE-2025-10225 | Incorrect Memory Allocation in OpenSSL-Based Session Module in AxxonSoft Axxon One (C-Werk) CWE-119 | 7.5 | High | 2025-09-10 |
| CVE-2025-10224 | Incorrect Evaluation of LDAP Nested Groups during Login in AxxonSoft Axxon One (C-Werk) CWE-287 | 5.4 | Medium | 2025-09-10 |
| CVE-2025-10223 | Improper Session Cleanup on Role Removal in Web Admin Panel in AxxonSoft Axxon One (C-Werk) CWE-613 | 5.4 | Medium | 2025-09-10 |
| CVE-2025-10222 | Sensitive Information Disclosure in Diagnostic Dumps in AxxonSoft Axxon One VMS CWE-200 | 3.3 | Low | 2025-09-10 |
| CVE-2025-10220 | Outdated Third-Party NuGet Packages in AxxonSoft Axxon One VMS 2.0.0 through 2.0.4 CWE-1104 | 9.8 | Critical | 2025-09-10 |
All 7 known CVE vulnerabilities affecting AxxonOne C-Werk with full Chinese analysis, references, and POCs where available.