CVE-2025-59320

Published: Ago 12, 2026 Last Modified: Ago 12, 2026
ExploitDB:
Other exploit source:
Google Dorks:

Description

AI Translation Available

CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 stores TPM2.0 secrets in a serialized format within unused disk sectors. An unauthenticated attacker with physical access to the system disk can recover this information and craft an environment to unseal the TPM.

https://i.blackhat.com/BH-USA-26/Presentations/US-26-Burch-The-Cost-of-Obscurit…
https://i.blackhat.com/BH-USA-26/Presentations/US-26-Burch-The-Cost-of-Obscurit…
https://www.cpsd.at/blog/