First published: Mon Apr 21 2025(Updated: )
In Soffid Console 3.6.31 before 3.6.32, authorization to use the pam service is mishandled.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Soffid Console | <3.6.32 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-32408 is classified as a high-severity vulnerability due to the potential for arbitrary code execution.
To fix CVE-2025-32408, update to Soffid Console version 3.5.39 or later.
CVE-2025-32408 can allow a malicious agent to execute arbitrary code on the Sync Server, compromising system security.
Soffid Console versions prior to 3.5.39 are affected by CVE-2025-32408.
The vendor responsible for CVE-2025-32408 is Soffid.