CVE-2025-27244

CVSS 3.0 Score 5.9 of 10 (medium)

Details

Published Apr 2, 2025
CWE ID 201

Summary

CVE-2025-27244 is a vulnerability affecting AssetView and AssetView CLOUD. The issue involves the mishandling of sent data, allowing a remote, unauthenticated attacker to potentially acquire sensitive information. This vulnerability poses a significant risk as it bypasses authentication requirements, increasing the likelihood of a successful attack. The exact nature of the sensitive information that can be obtained remains unclear, but the potential consequences could be severe. It is strongly recommended that users of AssetView and AssetView CLOUD apply any available patches or updates to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share