logo

Critical ConnectWise Automate Flaw (CVE-2025-11492, CVSS 9.6) Allows RMM Agent Man-in-the-Middle Attack

ID: 7c3aaa7b-4ded-5640-94ee-4d67cef259c1

STIX ID: report--7c3aaa7b-4ded-5640-94ee-4d67cef259c1

Feed Name: securityonline.info

Threat Score
78/100

Date Published: 2025-10-17

Date Updated: 2026-04-22

Author: Ddos

...
...

ConnectWise released a security fix for two high-severity vulnerabilities in Automate (CVE-2025-11492 CVSS 9.6 and CVE-2025-11493 CVSS 8.8) that could enable on‑path attackers to intercept agent communications (agents using HTTP) or substitute malicious update files; the 2025.9 patch enforces HTTPS/TLS and improves update verification, cloud instances have been updated and on‑prem customers must apply the release.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.