PT-2025-25448 · Extreme Networks · Extremecloud Universal Ztna

Bert Verschaeve

+1

·

Published

2025-06-13

·

Updated

2026-01-08

·

CVE-2025-6083

CVSS v4.0

5.2

Medium

VectorAV:N/AC:L/AT:P/PR:L/UI:A/VC:L/VI:N/VA:N/SC:H/SI:H/SA:H/S:N
Name of the Vulnerable Software and Affected Versions ExtremeCloud Universal ZTNA (affected versions not specified)
Description A syntax error in the searchKeyword condition allows queries to bypass the owner id filter. This issue may enable users to search data across the entire table, rather than being restricted to their specific owner id.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Authentication

Weakness Enumeration

Related Identifiers

CVE-2025-6083

Affected Products

Extremecloud Universal Ztna