What is CVE-2025-50325?
CVE-2025-50325 is an authentication bypass vulnerability affecting BandiZip v.7.37. It allows remote attackers to circumvent the Mark-of-the-Web protection mechanism, potentially enabling malicious actions on affected installations. Users should update to the latest version and avoid opening files from untrusted sources.
Azərbaycanca: CVE-2025-50325 BandiZip 7.37 versiyasında aşkarlanmış autentifikasiyadan yan keçmə zəifliyidir. Bu zəiflik uzaqdan hücum edənlərə Mark-of-the-Web qoruma mexanizmini keçərək təsirlənmiş sistemlərdə zərərli əməliyyatlar icra etməyə imkan verir. İstifadəçilər dərhal proqramı ən son versiyaya yeniləməli və təhlükəli mənbələrdən fayl açmamağa diqqət etməlidir.
Related CVEs
link basis: same weakness class CWE-287
FAQ2
Which software version is affected by CVE-2025-50325?
This vulnerability affects BandiZip version 7.37.
What mechanism can an attacker bypass using CVE-2025-50325?
An attacker can bypass the Mark-of-the-Web protection mechanism to perform malicious actions on affected systems.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.