CVE-2025-3773
A sensitive information exposure vulnerability in System Information Reporter (SIR) 1.0.3 and prior allows an authenticated non-admin local user to extract sensitive information stored in a registry backup folder.
Scoring
- Severity
- NONE
- CVSS base score
- 0
- CVSS vector
- CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:N/SC:N/SI:N/SA:N
- EPSS probability
- 0.12%
- CWE
- CWE-530
- Published
- 2025-06-26
- Last modified
- 2026-03-12
Affected products
- Trellix System Information Reporter
Weakness type
Related vulnerabilities
- CVE-2026-13514 — Chess Play and Learn App com.chess AndroidManifest.xml backup
- CVE-2024-56462 — IBM QRadar SIEM is vulnerable to using components with known vulnerabilities
- CVE-2026-2974 — AliasVault App Backup aliasvault.xml backup
- CVE-2020-36899 — QiHang Media Web Digital Signage 3.0.9 Unauthenticated Arbitrary File Disclosure
- CVE-2024-12330 — WP Database Backup – Unlimited Database & Files Backup by Backup for WP <= 7.3 - Unauthenticated Database Back-Up Exposure
- CVE-2024-3430 — QKSMS Backup File androidmanifest.xml backup
- CVE-2024-3128 — Replify-Messenger Backup File androidmanifest.xml backup
- CVE-2024-3124 — fridgecow smartalarm Backup File androidmanifest.xml backup