CVE-2025-4560
Last modified
CVE-2025-4560 is a medium-severity vulnerability rated 6.9/10 on the CVSS scale. The ISOinsight from Netvision has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to access certain system functions. These functions include viewing the administrator list, viewing and editing IP settings, and uploading files.. EPSS estimates a 0.31% chance of exploitation in the next 30 days.
Description
The ISOinsight from Netvision has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to access certain system functions. These functions include viewing the administrator list, viewing and editing IP settings, and uploading files.
Metrics
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2025-4560?
How severe is CVE-2025-4560?
How do I fix CVE-2025-4560?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-45583Incorrect access control in the FTP protocol of Audi UTR 2.0…9.1
- CVE-2025-45584Incorrect access control in the web service of Audi UTR 2.0 …7.5
- CVE-2025-45585Multiple stored cross-site scripting (XSS) vulnerabilities i…5.4
- CVE-2025-45586An issue in Audi UTR 2.0 Universal Traffic Recorder 2.0 allo…7.5
- CVE-2025-45587A stack overflow in the FTP service of Audi UTR 2.0 Universa…7
- CVE-2025-4559The ISOinsight from Netvision has a SQL Injection vulnerabil…9.8
- CVE-2025-45607An issue in the component /manage/ of itranswarp v2.19 allow…9.8
- CVE-2025-45608Incorrect access control in the /system/user/findUserList AP…7.5
- CVE-2025-45609Incorrect access control in the doFilter function of kob lat…7.5
- CVE-2025-4561The KFOX from KingFor has an Arbitrary File Upload vulnerabi…8.8
- CVE-2025-45610Incorrect access control in the component /scheduleLog/info/…7.5
- CVE-2025-45611Incorrect access control in the /user/edit/ component of hop…9.8
Are you affected by CVE-2025-4560?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
