CVE-2025-54469
Last modified
CVE-2025-54469 is a critical-severity vulnerability rated 9.9/10 on the CVSS scale. A vulnerability was identified in NeuVector, where the enforcer used environment variables CLUSTER_RPC_PORT and CLUSTER_LAN_PORT to generate a command to be executed via popen, without first sanitising their values. The entry process of the enforcer container is the monitor process. When the enforcer container stops, the monitor process checks whether the consul subprocess has exited. EPSS estimates a 0.43% chance of exploitation in the next 30 days.
Description
A vulnerability was identified in NeuVector, where the enforcer used environment variables CLUSTER_RPC_PORT and CLUSTER_LAN_PORT to generate a command to be executed via popen, without first sanitising their values. The entry process of the enforcer container is the monitor process. When the enforcer container stops, the monitor process checks whether the consul subprocess has exited. To perform this check, the monitor process uses the popen function to execute a shell command that determines whether the ports used by the consul subprocess are still active. The values of environment variables CLUSTER_RPC_PORT and CLUSTER_LAN_PORT are used directly to compose shell commands via popen without validation or sanitization. This behavior could allow a malicious user to inject malicious commands through these variables within the enforcer container.
Metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2025-54469?
How severe is CVE-2025-54469?
How do I fix CVE-2025-54469?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-54463Mattermost Confluence Plugin version <1.5.0 fails to handle …7.5
- CVE-2025-54464This vulnerability exists in ZKTeco WL20 due to storage of a…7
- CVE-2025-54465This vulnerability exists in ZKTeco WL20 due to hard-coded M…6.8
- CVE-2025-54466Improper Control of Generation of Code ('Code Injection') vu…9.8
- CVE-2025-54467When a Java command with password parameters is executed and…5.3
- CVE-2025-54468A vulnerability has been identified within Rancher Manager w…4.7
- CVE-2025-5447A vulnerability was found in Linksys RE6500, RE6250, RE6300,…9.8
- CVE-2025-54470This vulnerability affects NeuVector deployments only when t…8.6
- CVE-2025-54471NeuVector used a hard-coded cryptographic key embedded in th…6.5
- CVE-2025-54472Unlimited memory allocation in redis protocol parser in Apac…7.5
- CVE-2025-54473An authenticated RCE vulnerability in Phoca Commander compon…9.2
- CVE-2025-54474A SQLi vulnerability in DJ-Classifieds component 3.9.2-3.10.…8.5
Are you affected by CVE-2025-54469?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
