VYPR

by Truesec

CVEs (3)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2025-15554Hig0.517.80.00Mar 16, 2026Browser caching of LAPS passwords in Truesec’s LAPSWebUI before version 2.4 allows an attacker with access to a workstation to escalate their privileges via disclosure of local admin passwords.
CVE-2025-15552Hig0.517.80.00Mar 16, 2026Insufficient Session Expiration in Truesec’s LAPSWebUI before version 2.4 allows an attacker with access to a workstation to escalate their privileges via disclosure of local admin password.
CVE-2025-15553Hig0.467.10.00Mar 16, 2026Non-working logout functionality in Truesec’s LAPSWebUI before version 2.4 allows an attacker with access to a workstation to escalate their privileges via disclosure of local admin password.