216.73.216.233

CVE-2025-49083

· Published 31/07/2025 00:15 · Modified 31/07/2025 18:42

Labels: CVE-2025-49083 2025-07-31CVE-2025-49083CWE-502[email protected]

Essential information

Published
31/07/2025 00:15
Modified
31/07/2025 18:42
Author
Creator
CVSS
7.0 HIGH (v3) 7.0 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

CVE-2025-49083 is a vulnerability in the management console of Absolute Secure Access after version 12.00 and prior to version 13.56. Attackers with administrative access to the console can cause unsafe content to be deserialized and executed in the security context of the console. The attack complexity is low and there are no attack requirements. Privileges required are high and there is no user interaction required. The impact to confidentiality is low, impact to integrity is high and there is no impact to availability. The impact to the confidentiality and integrity of subsequent systems is low and there is no subsequent system impact to availability.

NVD status

Status
Undergoing Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
netmotionsoftware / absolute secure access cpe:2.3:a:netmotionsoftware:absolute_secure_access:12.0-13.55:*:*:*:*:*:*:*

References