Vulnerability Description
Vulnerability that allows a Padding Oracle Attack to be performed on the Funambol v30.0.0.20 cloud server. The thumbnail display URL allows an attacker to decrypt and encrypt the parameters used by the application to generate ‘self-signed’ access URLs.
Related Weaknesses (CWE)
References
FAQ
What is CVE-2025-41351?
CVE-2025-41351 is a documented vulnerability. Vulnerability that allows a Padding Oracle Attack to be performed on the Funambol v30.0.0.20 cloud server. The thumbnail display URL allows an attacker to decrypt and encrypt the parameters used by th...
How severe is CVE-2025-41351?
CVSS scoring is not yet available for CVE-2025-41351. Check NVD for updates.
Is there a patch for CVE-2025-41351?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.