CVE-2025-27392
CVSS 3.1 Score 7.2 of 10 (high)
Details
Published Mar 11, 2025
CWE ID 78
Summary
CVE-2025-27392 is a newly discovered vulnerability affecting SCALANCE LPE9403 devices (6GK5998-3GS00-2AC2), all versions below V4.0. The issue lies in the lack of sufficient input validation when creating new VXLAN configurations, making it possible for authenticated, highly-privileged remote attackers to execute arbitrary code on the device. This vulnerability could potentially lead to significant security compromises and requires immediate attention from affected organizations.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.