Skip to main content

CVE-2025-59683

8.2
HIGHCVSS v3.1 Base Score
0.17%
LOW RiskEPSS (37th percentile)

Pexip Infinity 15.0 through 38.0 before 38.1 has Improper Access Control in the Secure Scheduler for Exchange service, when used with Office 365 Legacy Exchange Tokens. This allows a remote attacker to read potentially sensitive data and excessively consume resources, leading to a denial of service.

Published: 12/25/2025
Modified: 1/5/2026
Back to CVE Lookup

Vulnerability Summary

CVSS v3 Score

8.2HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H

EPSS Score (Exploitation Probability)

0.17%LOW Exploitation Risk
37th percentile

This vulnerability has a 0.17% probability of being exploited in the next 30 days, ranking higher than 37% of all scored CVEs.

Related Vulnerabilities