Skip to main content

CVE-2025-23239

8.7
HIGHCVSS v3.1 Base Score
0.64%
LOW RiskEPSS (71st percentile)

When running in Appliance mode, an authenticated remote command injection vulnerability exists in an undisclosed iControl REST endpoint. A successful exploit can allow the attacker to cross a security boundary. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

Published: 2/5/2025
Modified: 11/7/2025
Back to CVE Lookup

Vulnerability Summary

CVSS v3 Score

8.7HIGH

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:N

EPSS Score (Exploitation Probability)

0.64%LOW Exploitation Risk
71st percentile

This vulnerability has a 0.64% probability of being exploited in the next 30 days, ranking higher than 71% of all scored CVEs.

Related Vulnerabilities