#VU119866 Download of code without integrity check in ScreenConnect - CVE-2025-14265
Published: December 11, 2025
ScreenConnect
ConnectWise
Description
The vulnerability allows a remote attacker to compromise the affected system
The vulnerability exists due to software does not perform software integrity check when downloading updates. A remote attacker with ability to perform man-in-the-middle (MitM) attack can trick the victim into installing a malicious software update and compromise the affected system.