CVE-2025-24532

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Feb 11, 2025
CWE ID 284

Summary

CVE-2025-24532: A serious vulnerability has been discovered in various SCALANCE WAB, WAM, WAM-EEC, WUB, and WUM series devices, including those with model numbers 6GK5762-1, 6GK5763-1, 6GK5766-1, and others. The affected devices have versions below V3.0.0. This issue stems from incorrect authorization in SNMPv3 View configuration, potentially enabling unauthorized users with the role 'user' to alter the View Type of SNMPv3 Views. This vulnerability could lead to significant security risks, as attackers may gain unauthorized access to sensitive information or make critical changes to device configurations.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share