CVE-2025-6512

Published Jun 23, 2025

Last updated 24 days ago

Overview

Description
On a client with a non-admin user, a script can be integrated into a report. The reports could later be executed on the BRAIN2 server with administrator rights.
Source
0beee27a-7d8c-424f-8e46-ac453fa147e6
NVD status
Awaiting Analysis

Risk scores

CVSS 3.1

Type
Secondary
Base score
10
Impact score
6
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Severity
CRITICAL

Weaknesses

0beee27a-7d8c-424f-8e46-ac453fa147e6
CWE-94

Social media

Hype score
Not currently trending