First published: Tue Apr 15 2025(Updated: )
Arctera eDiscovery Platform before 10.3.2, when Enterprise Vault Collection Module is used, places a cleartext password on a command line in EVSearcher.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Arctera eDiscovery Platform | <10.3.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-32987 has been classified with a medium severity level due to the exposure of sensitive information.
To remediate CVE-2025-32987, upgrade the Arctera eDiscovery Platform to version 10.3.2 or later.
CVE-2025-32987 could allow unauthorized access to sensitive user credentials present in cleartext on the command line.
A potential workaround for CVE-2025-32987 is to avoid using the Enterprise Vault Collection Module until an upgrade is performed.
CVE-2025-32987 was published on October 10, 2025.