CVE-2025-65185: Entrinsik Informer
Low severity, CVSS 2.8. EPSS: 0.2% chance of exploitation in the next 30 days.
There is a username enumeration via local user login in Entrinsik Informer v5.10.1 which allows malicious users to enumerate users by entering an OTP code and new password then reviewing application responses.
Affected products
- Entrinsik Informer: version 5.10.1 only
Published 2025-12-17. Last modified 2026-06-17.