CVE-2025-23052

CVSS 3.1 Score 7.2 of 10 (high)

Details

Published Jan 14, 2025

Summary

CVE-2025-23052 is an authenticated command injection vulnerability that affects a network management service's command line interface. An attacker who successfully exploits this vulnerability can execute arbitrary commands with privileged user access on the underlying operating system. This poses a significant security risk, as an attacker could potentially gain full control over the affected system. Organizations using the affected network management service are advised to apply the available patch as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share