An unauthenticated user with management network access can get and modify the Radiflow iSAP Smart Collector (CentOS 7 - VSAP 1.20) configuration. The device has two web servers that expose unauthenticated REST APIs on the management network (TCP ports 8084 and 8086). An attacker can use these APIs to get access to all system settings, modify the configuration and execute some commands (e.g., system reboot).
History

Wed, 16 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00062}

epss

{'score': 0.00083}


Tue, 15 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00047}

epss

{'score': 0.00062}


Wed, 09 Jul 2025 14:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 09 Jul 2025 09:15:00 +0000

Type Values Removed Values Added
Description An unauthenticated user with management network access can get and modify the Radiflow iSAP Smart Collector (CentOS 7 - VSAP 1.20) configuration. The device has two web servers that expose unauthenticated REST APIs on the management network (TCP ports 8084 and 8086). An attacker can use these APIs to get access to all system settings, modify the configuration and execute some commands (e.g., system reboot).
Title Unauthenticated modification of Radiflow iSAP Smart Collector configuration
Weaknesses CWE-306
References
Metrics cvssV3_1

{'score': 9.9, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:H/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ENISA

Published: 2025-07-09T08:53:32.653Z

Updated: 2025-07-09T13:20:55.438Z

Reserved: 2025-04-10T08:40:13.779Z

Link: CVE-2025-3498

cve-icon Vulnrichment

Updated: 2025-07-09T13:12:59.132Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-07-09T09:15:27.137

Modified: 2025-07-10T13:17:30.017

Link: CVE-2025-3498

cve-icon Redhat

No data.