CVE-2025-32976
CVE-2025-32975 CVE-2025-32975 is an authentication bypass vulnerability that allows attackers to impersonate legitimate users without valid credentials. The vulnerability in the SSO authentication handling mechanism can lead to complete administrative takeover. CVE-2025-32976 A logic flaw exists in the two-factor authentication implementation that allows authenticated users to bypass TOTP-based 2FA requirements. The vulnerability lies in the 2FA validation process and can be exploited to gain elevated access. CVE-2025-32977 CVE-2025-32977 allows unauthenticated users to upload backup files to the system. While signature validation is implemented, weaknesses in the validation process can be exploited to upload malicious backup content that could compromise system integrity. CVE-2025-32978 CVE-2025-32978 allows unauthenticated users to replace system licenses through a web interface intended for license renewal. Attackers can exploit this to replace valid licenses with expired or trial licenses, causing a denial of service. d for the template engine. In the case of RS, exploitation does not require authentication.
EPSS 0.11% · 29.1th percentile
Risk Scores
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Quest | Quest KACE SMA |
Exploit Intelligence
- CIRCL seen: CVE-2025-32976 (circl-sighting)
- CIRCL seen: CVE-2025-32976 (circl-sighting)
- CIRCL seen: CVE-2025-32976 (circl-sighting)
- CIRCL seen: CVE-2025-32976 (circl-sighting)
- CIRCL seen: CVE-2025-32976 (circl-sighting)
- CIRCL seen: CVE-2025-32976 (circl-sighting)
- CIRCL seen: CVE-2025-32976 (circl-sighting)
- http://seclists.org/fulldisclosure/2025/Jun/25 (circl)
- https://support.quest.com/kb/4379499/quest-response-to-kace-sma-vulnerabilities-cve-2025-32975-cve-2025-32976-cve-2025-32977-cve-2025-32978 (circl)
- https://seclists.org/fulldisclosure/2025/Jun/23 (circl)
…and 1 more exploits
Timeline
- Jun 24, 2025 CVE Published
- Jun 24, 2025 PoC Published
- Jun 24, 2025 PoC Published
- Jun 24, 2025 PoC Published
- Jun 24, 2025 PoC Published
- Jun 25, 2025 EPSS Score
- Jun 25, 2025 PoC Published
- Jun 30, 2025 PoC Published
- Jul 5, 2025 EPSS Score
- Jul 15, 2025 EPSS Score
- Jul 25, 2025 EPSS Score
- Aug 4, 2025 EPSS Score
References
- https://ccb.belgium.be/advisories/warning-critical-vulnerabilities-found-quest-kace-systems-management-appliance-patch advisory
- https://support.quest.com/kb/4379499/quest-response-to-kace-sma-vulnerabilities-cve-2025-32975-cve-2025-32976-cve-2025-32977-cve-2025-32978 vendor
- https://seclists.org/fulldisclosure/2025/Jun/22 technical
- https://seclists.org/fulldisclosure/2025/Jun/23 technical
- https://seclists.org/fulldisclosure/2025/Jun/24 technical
- https://seclists.org/fulldisclosure/2025/Jun/25 technical
- https://arcticwolf.com/resources/blog/cve-2025-32975/ technical