CVE-2025-20045

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Feb 5, 2025
CWE ID 476

Summary

CVE-2025-20045 is a vulnerability affecting certain configurations of Message Routing type virtual servers. When SIP session Application Level Gateway mode (ALG) and SIP router ALG profiles, with Passthru Mode enabled, are used together, undisclosed traffic can trigger the Traffic Management Microkernel (TMM) to terminate. This issue only impacts software versions that are still within their technical support period.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share