An attacker with authenticated and privileged access could modify the contents of a non-sensitive file by traversing the path in the limited shell of the CLI. This security issue has been fixed in the latest version of NMC G2 which is available on the Eaton download center.
Metrics
Affected Vendors & Products
References
History
Fri, 05 Sep 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 05 Sep 2025 07:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An attacker with authenticated and privileged access could modify the contents of a non-sensitive file by traversing the path in the limited shell of the CLI. This security issue has been fixed in the latest version of NMC G2 which is available on the Eaton download center. | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Eaton
Published: 2025-09-05T07:05:18.846Z
Updated: 2025-09-05T13:29:15.610Z
Reserved: 2025-05-20T04:07:25.100Z
Link: CVE-2025-48395
Updated: 2025-09-05T13:29:07.984Z
Status : Awaiting Analysis
Published: 2025-09-05T07:15:34.343
Modified: 2025-09-05T17:47:10.303
Link: CVE-2025-48395
No data.