Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 05 Mar 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Amidaware
Amidaware tactical Rmm |
|
| CPEs | cpe:2.3:a:amidaware:tactical_rmm:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Amidaware
Amidaware tactical Rmm |
Tue, 23 Dec 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Barracuda
Barracuda rmm |
|
| CPEs | cpe:2.3:a:barracuda:rmm:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Barracuda
Barracuda rmm |
|
| Metrics |
cvssV3_1
|
Wed, 10 Dec 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Barracuda Networks
Barracuda Networks rmm |
|
| Vendors & Products |
Barracuda Networks
Barracuda Networks rmm |
Wed, 10 Dec 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 10 Dec 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Barracuda Service Center, as implemented in the RMM solution, in versions prior to 2025.1.1, does not correctly verify the name of an attacker-controlled WSDL service, leading to insecure reflection. This can result in remote code execution through either invocation of arbitrary methods or deserialization of untrusted types. | |
| Title | Barracuda RMM < 2025.1.1 Service Center Insecure Reflection RCE | |
| Weaknesses | CWE-470 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-05-14T02:08:16.586Z
Reserved: 2025-04-15T19:15:22.596Z
Link: CVE-2025-34393
Updated: 2025-12-10T16:32:53.410Z
Status : Analyzed
Published: 2025-12-10T16:16:24.340
Modified: 2025-12-23T14:39:58.430
Link: CVE-2025-34393
No data.
OpenCVE Enrichment
Updated: 2025-12-10T21:33:07Z