PT-2025-47447 · Upkeeper · Upkeeper Manager

Published

2025-11-19

·

Updated

2025-11-19

·

CVE-2025-11446

CVSS v4.0

7.3

High

VectorAV:L/AC:H/AT:N/PR:H/UI:A/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H
Name of the Vulnerable Software and Affected Versions upKeeper Manager versions 5.2.0 through 5.2.11
Description A flaw exists in upKeeper Manager that allows for the insertion of sensitive information into log files. Specifically, the system permits the use of known domain credentials, potentially exposing this data.
Recommendations Update upKeeper Manager to version 5.2.12 or later.

Fix

Insertion into Log File

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-11446

Affected Products

Upkeeper Manager