CVE-2025-24525: Keysight Ixia Vision Product Family
High severity, CVSS 7.5. EPSS: 0.3% chance of exploitation in the next 30 days.
Keysight Ixia Vision has an issue with hardcoded cryptographic material which may allow an attacker to intercept or decrypt payloads sent to the device via API calls or user authentication if the end user does not replace the TLS certificate that shipped with the device. Remediation is available in Version 6.9.1, released on September 23, 2025.
Affected products
- Keysight Ixia Vision Product Family: version 6.3.1 only
Published 2025-09-30. Last modified 2026-06-17.