Critical ConnectWise Automate Flaw (CVE-2025-11492, CVSS 9.6) Allows RMM Agent Man-in-the-Middle Attack
ID: 7c3aaa7b-4ded-5640-94ee-4d67cef259c1
STIX ID: report--7c3aaa7b-4ded-5640-94ee-4d67cef259c1
Feed Name: securityonline.info
Threat Score
ConnectWise released a security fix for two high-severity vulnerabilities in Automate (CVE-2025-11492 CVSS 9.6 and CVE-2025-11493 CVSS 8.8) that could enable on‑path attackers to intercept agent communications (agents using HTTP) or substitute malicious update files; the 2025.9 patch enforces HTTPS/TLS and improves update verification, cloud instances have been updated and on‑prem customers must apply the release.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
