Keysight Ixia Vision has an issue with hardcoded cryptographic material 
which may allow an attacker to intercept or decrypt payloads sent to the
 device via API calls or user authentication if the end user does not 
replace the TLS certificate that shipped with the device. Remediation is
 available in Version 6.9.1, released on September 23, 2025.
                
            Metrics
Affected Vendors & Products
References
        History
                    Thu, 02 Oct 2025 09:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Keysight
         Keysight ixia Vision  | 
|
| Vendors & Products | 
        
        Keysight
         Keysight ixia Vision  | 
Wed, 01 Oct 2025 15:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Tue, 30 Sep 2025 23:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | Keysight Ixia Vision has an issue with hardcoded cryptographic material which may allow an attacker to intercept or decrypt payloads sent to the device via API calls or user authentication if the end user does not replace the TLS certificate that shipped with the device. Remediation is available in Version 6.9.1, released on September 23, 2025. | |
| Title | Keysight Ixia Vision Product Family Use of Hard-coded Cryptographic Key | |
| Weaknesses | CWE-321 | |
| References | 
         | |
| Metrics | 
        
        cvssV3_1
         
 
  | 
Status: PUBLISHED
Assigner: icscert
Published: 2025-09-30T23:04:14.688Z
Updated: 2025-10-01T15:02:51.427Z
Reserved: 2025-02-05T15:36:40.948Z
Link: CVE-2025-24525
Updated: 2025-10-01T15:02:32.112Z
Status : Awaiting Analysis
Published: 2025-09-30T23:15:27.970
Modified: 2025-10-02T19:12:17.160
Link: CVE-2025-24525
No data.