Weak Cryptography Vulnerability in Cohesity TranZman Migration Appliance
CVE-2025-63912

5.5MEDIUM

Key Information:

Vendor

Cohesity

Vendor
CVE Published:
3 March 2026

What is CVE-2025-63912?

The Cohesity TranZman Migration Appliance Release 4.0 Build 14614 utilizes a weak cryptographic algorithm for data encryption. This vulnerability allows attackers to easily reverse the encryption process, leading to the potential exposure of sensitive user credentials. Organizations using this version should evaluate their security measures and consider upgrades to mitigate this risk. Further information can be found in detailed analyses on GitHub.

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.