Risk Scores
CVSS v4.0
9.300000190734863
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
EPSS Score
0.18%
39.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apache | Apache CXF <4.1.3 | |
| Apache | Apache CXF <3.6.8 | |
| RealObjects | RealObjects PDFreactor <12.3 | |
| Red Hat | Red Hat Enterprise Linux | |
| Red Hat | Red Hat JBoss Enterprise Application Platform <7.4.24 | |
| NetApp | NetApp ActiveIQ Unified Manager for Microsoft Windows | |
| Apache | Apache CXF <4.0.9 | |
| NetApp | NetApp ActiveIQ Unified Manager for Linux |
Timeline
- Aug 8, 2025 CVE Published
- Aug 8, 2025 EPSS Score
- Aug 16, 2025 EPSS Score
- Aug 24, 2025 EPSS Score
- Sep 1, 2025 EPSS Score
- Sep 9, 2025 EPSS Score
- Sep 16, 2025 EPSS Score
- Sep 24, 2025 EPSS Score
- Oct 2, 2025 EPSS Score
- Oct 10, 2025 EPSS Score
- Oct 18, 2025 EPSS Score
- Oct 26, 2025 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2025/wid-sec-w-2025-1751.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2025-1751 advisory
- https://lists.apache.org/thread/f1nv488ztc0js4g5ml2v88mzkzslyh83 advisory
- https://www.pdfreactor.com/pdfreactor-12-3-now-available/ advisory
- https://security.netapp.com/advisory/NTAP-20250912-0001 advisory
- https://access.redhat.com/errata/RHSA-2025:17318 advisory
- https://access.redhat.com/errata/RHSA-2025:17298 advisory
- https://access.redhat.com/errata/RHSA-2025:17299 advisory
- https://access.redhat.com/errata/RHSA-2025:17317 advisory
- https://access.redhat.com/errata/RHSA-2026:4924 advisory
- https://access.redhat.com/errata/RHSA-2026:4915 advisory
- https://access.redhat.com/errata/RHSA-2026:4916 advisory
- https://access.redhat.com/errata/RHSA-2026:4917 advisory
- https://access.redhat.com/errata/RHSA-2026:6012 advisory
- https://access.redhat.com/errata/RHSA-2026:6011 advisory