CVE-2025-12508: Bizerba BRAIN2

High severity, CVSS 8.4. EPSS: 0.2% chance of exploitation in the next 30 days.

When using domain users as BRAIN2 users, communication with Active Directory services is unencrypted. This can lead to the interception of authentication data and compromise confidentiality.

Affected products

  • Bizerba BRAIN2: from 0.0, before 3.07 (fixed in 3.07)

Published 2025-10-31. Last modified 2026-10-07.