CVE-2025-27396

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Mar 11, 2025
CWE ID 273

Summary

CVE-2025-27396 is a vulnerability affecting SCALANCE LPE9403 devices with firmware versions below V4.0 (6GK5998-3GS00-2AC2). This issue allows authenticated, lowly-privileged remote attackers to escalate their privileges, as the devices do not adequately restrict the necessary elevation of privileges for certain functionalities. This shortcoming poses a significant risk, as attackers could potentially gain unauthorized access and control over the impacted systems.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share