CVE Vulnerabilities

CVE-2025-12047

Improper Certificate Validation

Published: Nov 12, 2025 | Modified: Nov 14, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A vulnerability was reported in the Lenovo Scanner pro application during an internal security assessment that, under certain circumstances, could allow an attacker on the same logical network to disclose sensitive user files from the application.

Weakness

The product does not validate, or incorrectly validates, a certificate.

Potential Mitigations

References