CVE Database
/

CVE-2025-1868

Back to search

CVE-2025-1868

Published: Mar 3, 2025

Modified: Mar 3, 2025

PUBLISHED

Description

Vulnerability of unauthorized exposure of confidential information affecting Advanced IP Scanner and Advanced Port Scanner. It occurs when these applications initiate a network scan, inadvertently sending the NTLM hash of the user performing the scan. This vulnerability can be exploited by intercepting network traffic to a legitimate server or by setting up a fake server, in both local and remote scenarios. This exposure is relevant for both HTTP/HTTPS and SMB protocols.

VendorProductVersions

Famatech Corp

Advanced IP Scanner

unaffected
2.5.4594.1 and earlier

Famatech Corp

Advanced Port Scanner

unaffected
2.5.3869 and earlier

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now