CVE-2025-64091: Authenticated Remote Code Execution in the NTP-configuration
Published Jan 9, 2026
·Updated
This vulnerability allows authenticated attackers to execute commands via the NTP-configuration of the device.
Affected Software
2 affected components
All of the following
Zenitel Tcis-3 Firmware<9.2.3.3
Zenitel Tcis-3
Event History
Jan 9, 2026
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
DescriptionSeverity
Data Sourced
via NVD·10:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-64091?
CVE-2025-64091 is classified as a critical vulnerability due to its potential for authenticated remote code execution.
2
How do I fix CVE-2025-64091?
To mitigate CVE-2025-64091, update the affected Zenitel TCIS-3 firmware to version 9.2.3.3 or later.
3
Who is affected by CVE-2025-64091?
CVE-2025-64091 primarily affects devices running vulnerable versions of the Zenitel TCIS-3 firmware.
4
What types of attacks can exploit CVE-2025-64091?
CVE-2025-64091 can be exploited by authenticated attackers to execute arbitrary commands through the NTP-configuration.
5
Is CVE-2025-64091 a local or remote vulnerability?
CVE-2025-64091 is a remote vulnerability that requires authentication for exploitation.