Unrated severityNVD Advisory· Published Jan 28, 2026· Updated Jan 28, 2026
Use of a hardcoded static key to protect sensitive data in Explorance Blue
CVE-2025-57796
Description
Explorance Blue versions prior to 8.14.12 use reversible symmetric encryption with a hardcoded static key to protect sensitive data, including user passwords and system configurations. This approach allows stored values to be decrypted offline if the encrypted data are obtained.
Affected products
2< 8.14.12+ 1 more
- (no CPE)range: < 8.14.12
- (no CPE)range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- github.com/mandiant/Vulnerability-Disclosures/blob/master/2026/MNDT-2026-0005.mdmitrethird-party-advisory
- online-help.explorance.com/blue/articles/security-advisories-(january-2026)mitrevendor-advisory
- online-help.explorance.com/blue/articles/security-advisory:-cve-2025-57796mitrevendor-advisory
- www.explorance.com/products/bluemitreproduct
News mentions
0No linked articles in our index yet.