CVE-2025-23405
CVSS 3.1 Score 5.3 of 10 (medium)
Details
Published Feb 28, 2025
CWE ID 117
Summary
CVE-2025-23405 is a newly discovered vulnerability that allows unauthenticated users to manipulate log effects, impacting metrics gathering and incident response efforts. This issue could potentially expose risks of injection attacks, such as log injection. By exploiting this vulnerability, an attacker can gain unauthorized access to system logs and manipulate data, hindering the ability to accurately respond to security incidents and potentially leading to further security breaches.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.