arbitrary code execution when a privileged engineer user with console access modifies a configuration file
used by a root-level daemon to execute custom scripts.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-25276 | CWE-269: Improper Privilege Management vulnerability exists that could cause privilege escalation and arbitrary code execution when a privileged engineer user with console access modifies a configuration file used by a root-level daemon to execute custom scripts. |
Mon, 25 Aug 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Schneider-electric
Schneider-electric saitel Dp Schneider-electric saitel Dr |
|
| Vendors & Products |
Schneider-electric
Schneider-electric saitel Dp Schneider-electric saitel Dr |
Wed, 20 Aug 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 20 Aug 2025 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | CWE-269: Improper Privilege Management vulnerability exists that could cause privilege escalation and arbitrary code execution when a privileged engineer user with console access modifies a configuration file used by a root-level daemon to execute custom scripts. | |
| Weaknesses | CWE-269 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: schneider
Published:
Updated: 2025-08-20T15:11:28.414Z
Reserved: 2025-08-01T02:45:24.698Z
Link: CVE-2025-8453
Updated: 2025-08-20T15:11:23.492Z
Status : Deferred
Published: 2025-08-20T13:15:29.660
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-8453
No data.
OpenCVE Enrichment
Updated: 2025-08-25T22:27:35Z
EUVD