CVE-2025-15610: Critical severity OpenText RightFax vulnerability
The .NET Remoting framework used by OpenText Fax (RightFax) includes known security vulnerabilities that could be exploited if the service is exposed in environments where the remoting ports are accessible.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-15610?
CVE-2025-15610 is classified as a critical severity vulnerability due to its ability to allow object injection through deserialization of untrusted data.
How do I fix CVE-2025-15610?
To fix CVE-2025-15610, ensure that you are running an updated version of OpenText RightFax that addresses the deserialization vulnerability.
What versions of RightFax are affected by CVE-2025-15610?
CVE-2025-15610 affects all versions of OpenText RightFax up to and including version 25.4.
What is the impact of exploiting CVE-2025-15610?
Exploitation of CVE-2025-15610 can lead to unauthorized access and potential execution of arbitrary code through object injection.
Is there a workaround for CVE-2025-15610 if I cannot update immediately?
Currently, there is no recommended workaround for CVE-2025-15610 aside from updating to a non-vulnerable version of OpenText RightFax.