New assessment for topic: CVE-2025-3935
Topic description: "ScreenConnect versions 25.2.3 and earlier versions may be susceptible to a ViewState code injection attack ..."
"On the 24th April 2025 Connectwise released an advisory warning that ScreenConnect versions before `25.2.3` were susceptible to ViewState code injection attacks, if an attacker had privileged access and hence access to the machine keys defined in application config ..."
Link:
https://attackerkb.com/assessments/cd141f73-7686-4848-b0cd-2893225b446b