CVE-2026-5224: Sensitive Data Exposure in Kriptek Crypto's Cryptosim
Published Aug 18, 2026
·Updated
Cleartext storage of sensitive information vulnerability in Kriptok Crypto and Information Technologies Industry Trade Inc. Cryptosim allows Retrieve Embedded Sensitive Data.
This issue affects Cryptosim: before 3.1.0.229.
Affected Software
1 affected component
Cryptosim<3.1.0.229
Event History
Aug 18, 2026
CVE Published
via MITRE·11:48 AM
Data Sourced
via MITRE·11:48 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Which deployments should be considered affected?
Systems running Cryptosim versions before 3.1.0.229 are affected. The provided data does not state whether any particular deployment or configuration is exempt.
2
What access does an attacker need and what is the likely impact?
Exploitation requires low-level privileges and network access, and does not require user interaction. Successful exploitation can expose sensitive information; no integrity or availability impact is identified in the supplied vector.