VDB
CVE-2025-29774
CVE-2025-29774
PUBLISHED
CVSS 8.699999809265137 HIGH
BigFix ist eine Lösung zum Erkennen und Verwalten von physischen und virtuellen Endpunkten.
EPSS 0.47% · 65.1th percentile
Risk Scores
CVSS 4.0
8.699999809265137
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
EPSS Score
0.47%
65.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| IBM | IBM App Connect Enterprise <12.0.12.13 | |
| HCL | HCL BigFix Reports | |
| IBM | IBM App Connect Enterprise <13.0.3.0 | |
| HCL | HCL BigFix WebUI Applications | |
| IBM | IBM App Connect Enterprise <12.11.0 | |
| HCL | HCL BigFix |
Exploit Intelligence
- Phantom Signature Attack: An Analysis of the Critical Vulnerability CVE-2025-29774 in the Bitcoin Protocol, SIGHASH_SINGLE Implementation Flaws, and the Mathematical Framework for Private Key Recovery in Lost Cryptocurrency Wallets Enabling Unrestricted Control over BTC Assets (github-poc-repo)
- Phantom Signature Attack: An Analysis of the Critical Vulnerability CVE-2025-29774 in the Bitcoin Protocol, SIGHASH_SINGLE Implementation Flaws, and the Mathematical Framework for Private Key Recovery in Lost Cryptocurrency Wallets Enabling Unrestricted Control over BTC Assets (github-poc-repo)
- Phantom Signature Attack: An Analysis of the Critical Vulnerability CVE-2025-29774 in the Bitcoin Protocol, SIGHASH_SINGLE Implementation Flaws, and the Mathematical Framework for Private Key Recovery in Lost Cryptocurrency Wallets Enabling Unrestricted Control over BTC Assets (github-poc-repo)
- Phantom Signature Attack: An Analysis of the Critical Vulnerability CVE-2025-29774 in the Bitcoin Protocol, SIGHASH_SINGLE Implementation Flaws, and the Mathematical Framework for Private Key Recovery in Lost Cryptocurrency Wallets Enabling Unrestricted Control over BTC Assets (github-poc-repo)
- Phantom Signature Attack: An Analysis of the Critical Vulnerability CVE-2025-29774 in the Bitcoin Protocol, SIGHASH_SINGLE Implementation Flaws, and the Mathematical Framework for Private Key Recovery in Lost Cryptocurrency Wallets Enabling Unrestricted Control over BTC Assets (github-poc-repo)
- Phantom Signature Attack: An Analysis of the Critical Vulnerability CVE-2025-29774 in the Bitcoin Protocol, SIGHASH_SINGLE Implementation Flaws, and the Mathematical Framework for Private Key Recovery in Lost Cryptocurrency Wallets Enabling Unrestricted Control over BTC Assets (github-poc-repo)
- Phantom Signature Attack: An Analysis of the Critical Vulnerability CVE-2025-29774 in the Bitcoin Protocol, SIGHASH_SINGLE Implementation Flaws, and the Mathematical Framework for Private Key Recovery in Lost Cryptocurrency Wallets Enabling Unrestricted Control over BTC Assets (github-poc-repo)
- Phantom Signature Attack: An Analysis of the Critical Vulnerability CVE-2025-29774 in the Bitcoin Protocol, SIGHASH_SINGLE Implementation Flaws, and the Mathematical Framework for Private Key Recovery in Lost Cryptocurrency Wallets Enabling Unrestricted Control over BTC Assets (github-poc-repo)
- Phantom Signature Attack: An Analysis of the Critical Vulnerability CVE-2025-29774 in the Bitcoin Protocol, SIGHASH_SINGLE Implementation Flaws, and the Mathematical Framework for Private Key Recovery in Lost Cryptocurrency Wallets Enabling Unrestricted Control over BTC Assets (github-poc-repo)
- Phantom Signature Attack: An Analysis of the Critical Vulnerability CVE-2025-29774 in the Bitcoin Protocol, SIGHASH_SINGLE Implementation Flaws, and the Mathematical Framework for Private Key Recovery in Lost Cryptocurrency Wallets Enabling Unrestricted Control over BTC Assets (github-poc-repo)
…and 54 more exploits
Timeline
- Mar 14, 2025 CVE Published
- Mar 14, 2025 PoC Published
- Mar 14, 2025 PoC Published
- Mar 15, 2025 EPSS Score
- Mar 18, 2025 PoC Published
- Mar 19, 2025 PoC Published
- Mar 19, 2025 PoC Published
- Mar 24, 2025 PoC Published
- Mar 28, 2025 EPSS Score
- Apr 11, 2025 EPSS Score
- Apr 24, 2025 EPSS Score
- May 8, 2025 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2025/wid-sec-w-2025-0705.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2025-0705 advisory
- https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0120318 advisory
- https://github.com/axios/axios/security/advisories/GHSA-jr5f-v2jv-69x6 advisory
- https://github.com/canvg/canvg/issues/1749 advisory
- https://github.com/babel/babel/pull/17173 advisory
- https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0120590 advisory
- https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0124272 advisory
- https://wid.cert-bund.de/.well-known/csaf/white/2025/wid-sec-w-2025-0841.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2025-0841 advisory
- https://www.ibm.com/support/pages/node/7231056 advisory
- https://www.ibm.com/support/pages/node/7232928 advisory