VDB
CVE-2025-24860
CVE-2025-24860
PUBLISHED
Apache Cassandra: CassandraNetworkAuthorizer and CassandraCIDRAuthorizer can be bypassed allowing access to different network regions
EPSS 0.16% · 37.0th percentile
Risk Scores
EPSS Score
0.16%
37.0th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | cassandra | 5.0.0, 4.1.0, 4.0.0 |
| Bitnami | cassandra | 5.0.0, 4.0.0, 4.1.0 |
Exploit Intelligence
- CIRCL seen: CVE-2025-24860 (circl-sighting)
- CIRCL seen: CVE-2025-24860 (circl-sighting)
- CIRCL seen: CVE-2025-24860 (circl-sighting)
- CIRCL seen: CVE-2025-24860 (circl-sighting)
- CIRCL seen: CVE-2025-24860 (circl-sighting)
- CIRCL published-proof-of-concept: CVE-2025-24860 (circl-sighting)
- CIRCL seen: CVE-2025-24860 (circl-sighting)
- CIRCL seen: CVE-2025-24860 (circl-sighting)
- CIRCL seen: CVE-2025-24860 (circl-sighting)
- http://www.openwall.com/lists/oss-security/2025/02/03/3 (circl)
…and 2 more exploits
Timeline
- Feb 3, 2025 CVE Published
- Feb 3, 2025 PoC Published
- Feb 4, 2025 PoC Published
- Feb 4, 2025 PoC Published
- Feb 4, 2025 PoC Published
- Feb 4, 2025 PoC Published
- Feb 4, 2025 PoC Published
- Feb 4, 2025 PoC Published
- Feb 4, 2025 CVE Updated
- Feb 5, 2025 EPSS Score
- Feb 6, 2025 PoC Published
- Feb 7, 2025 PoC Published