← Zurück zur CVE-Suche

CVE-2025-62619

KVM

Beschreibung

Missing authentication in the KVM key download endpoint could allow an unauthenticated attacker with knowledge of the exposed URL to retrieve sensitive keys, potentially leading to loss of confidentiality.

CVSS 6.3EPSS 0.321%Risiko 0.65
Quelle öffnen
Veröffentlicht
2026-05-14 15:16:43
Betroffene Versionen
unknown
Typ
Core software
Vektor
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X