CVE-2025-25042
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Published Mar 18, 2025
CWE ID 359
Summary
CVE-2025-25042 is a vulnerability affecting the AOS-CX REST interface. This issue grants authenticated, low-privileged attackers the ability to access sensitive information. The vulnerability can result in the disclosure of encrypted credentials belonging to other users on the switch, potentially leading to unauthorized access or data breaches. Successful exploitation requires authentication, but the impact can be significant, making it a security concern for network administrators.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.