The affected products could allow an unauthenticated attacker to access system information that could enable further access to sensitive files and obtain administrative credentials.
History

Tue, 20 May 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 20 May 2025 18:00:00 +0000

Type Values Removed Values Added
Description The affected products could allow an unauthenticated attacker to access system information that could enable further access to sensitive files and obtain administrative credentials.
Title Exposure of Sensitive System Information to an Unauthorized Control Sphere
Weaknesses CWE-497
References
Metrics cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published: 2025-05-20T17:48:02.341Z

Updated: 2025-05-20T18:16:37.144Z

Reserved: 2025-05-05T17:29:44.355Z

Link: CVE-2025-4364

cve-icon Vulnrichment

Updated: 2025-05-20T18:16:33.529Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-05-20T18:15:47.807

Modified: 2025-05-21T20:24:58.133

Link: CVE-2025-4364

cve-icon Redhat

No data.