VDB
CVE-2025-59814
CVE-2025-59814
PUBLISHED
CVSS 8.800000190734863 HIGH
This vulnerability allows malicious actors to gain unauthorized access to the Zenitel ICX500 and ICX510 Gateway Billing Admin endpoint, enabling them to read the entire contents of the Billing Admin database.
EPSS 0.04% · 14.2th percentile
Risk Scores
CVSS 3.1
8.800000190734863
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.04%
14.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Zenitel | ICX500 | <1.4.3.3 |
| Zenitel | ICX510 | <1.4.3.3 |
Timeline
- Sep 25, 2025 CVE Published
- Sep 26, 2025 EPSS Score
- Sep 29, 2025 CVE Updated
- Oct 3, 2025 EPSS Score
- Oct 4, 2025 Coalition ESS Score
- Oct 6, 2025 Coalition ESS Score
- Oct 10, 2025 EPSS Score
- Oct 16, 2025 EPSS Score
- Oct 20, 2025 Coalition ESS Score
- Oct 23, 2025 EPSS Score
- Oct 30, 2025 EPSS Score
- Oct 30, 2025 Coalition ESS Score
References
- Zenitel url
- Zenitel patch
- https://nvd.nist.gov/vuln/detail/CVE-2025-59814 advisory