Reversible Encoding Vulnerability in NetSupport Manager by NetSupport
CVE-2025-34180
Key Information:
- Vendor
Netsupport Software
- Status
- Vendor
- CVE Published:
- 15 December 2025
Badges
What is CVE-2025-34180?
A vulnerability exists in NetSupport Manager prior to version 14.12.0001, where a shared Gateway Key is utilized for authentication across its components. This key is stored using a reversible encoding method, making it susceptible to decoding. If an attacker gains access to a client configuration file, they can easily retrieve the plaintext Gateway Key. This compromise allows unauthorized individuals to access NetSupport Manager's connectivity services and remotely control systems under that key, posing significant security risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Manager 0 < 14.12.0001
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
