CVE-2025-0914
CVSS 3.1 Score 3.8 of 10 (low)
Details
Published Feb 27, 2025
CWE ID 281
Summary
CVE-2025-0914: A significant access control issue was identified in Velociraptor's VQL shell feature, affecting versions below 0.73.4. Authenticated users could bypass the prevent_execve flag in the configuration file and execute the execve() plugin, despite it being explicitly forbidden. This vulnerability primarily affects users who choose to implement this uncommon configuration. This issue has been resolved in release 0.73.4.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Rapid7