← back
CVE-2025-42890

Insecure key & Secret Management vulnerability in SQL Anywhere Monitor (Non-Gui)

CVSS 10 CRITICALEPSS 0.6%CWE-798
SQL Anywhere Monitor (Non-GUI) baked credentials into the code,exposing the resources or functionality to unintended users and providing attackers with the possibility of arbitrary code execution.This could cause high impact on confidentiality integrity and availability of the system.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →