CVE-2025-61429: High severity NCR Atleos Terminal Manager vulnerability
Published Oct 29, 2025
·Updated
An issue in NCR Atleos Terminal Manager (ConfigApp) v3.4.0 allows attackers to escalate privileges via a crafted request.
Affected Software
1 affected component
NCR Atleos Terminal Manager
Event History
Oct 29, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-61429?
CVE-2025-61429 has been classified as a high severity vulnerability due to the potential for privilege escalation.
2
How does CVE-2025-61429 allow privilege escalation?
CVE-2025-61429 allows attackers to escalate privileges by sending a crafted request to the NCR Atleos Terminal Manager.
3
Which version of NCR Atleos Terminal Manager is affected by CVE-2025-61429?
NCR Atleos Terminal Manager v3.4.0 is affected by CVE-2025-61429.
4
What steps can be taken to mitigate CVE-2025-61429?
To mitigate CVE-2025-61429, it is recommended to apply patches provided by NCR for the NCR Atleos Terminal Manager.
5
Is there a known exploit for CVE-2025-61429?
Although specific exploit details are not widely published, the vulnerability's nature suggests it could be exploited by attackers with access to the affected software.