CVE-2025-20658 - CERT CVE
ID CVE-2025-20658
Sažetak In DA, there is a possible permission bypass due to a logic error. This could lead to local escalation of privilege, if an attacker has physical access to the device, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09474894; Issue ID: MSV-2597.
Reference
CVSS
Base: 6.0
Impact: 5.5
Exploitability:0.5
Pristup
VektorSloženostAutentikacija
PHYSICAL HIGH NONE
Impact
PovjerljivostCjelovitostDostupnost
HIGH HIGH LOW
CVSS vektor CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:L
Zadnje važnije ažuriranje 09-04-2025 - 15:20
Objavljeno 07-04-2025 - 04:15