CVE Database
/

CVE-2025-15552

Back to search

CVE-2025-15552

Published: Mar 16, 2026

Modified: Mar 16, 2026

PUBLISHED

Description

Insufficient Session Expiration in Truesec’s LAPSWebUI before version 2.4 allows an attacker with access to a workstation to escalate their privileges via disclosure of local admin password.

VendorProductVersions

Truesec

LAPSWebUI

affected
0 - < 2.4
unaffected
2.4

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now