CVE-2025-27398
CVSS 3.1 Score 2.7 of 10 (low)
Details
Published Mar 11, 2025
CWE ID 78
Summary
CVE-2025-27398 is a vulnerability affecting SCALANCE LPE9403 devices with firmware versions below V4.0 (6GK5998-3GS00-2AC2). The issue lies in the way these devices handle special characters in user-controlled log paths. An authenticated, highly-privileged remote attacker could exploit this vulnerability and execute a limited set of binaries that already exist on the system. This flaw poses a significant security risk and requires affected organizations to apply the necessary patches promptly.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.