PT-2025-43452 · Unknown · Callredirectionprocessor.Java

Published

2025-04-01

·

Updated

2025-12-10

·

CVE-2025-22432

CVSS v3.1

6.7

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions versions prior to 2025-22432
Description A persistent connection may occur due to improper input validation within the notifyTimeout function of the CallRedirectionProcessor.java component. This could potentially allow for local escalation of privilege and the launch of background activities requiring User execution privileges. User interaction is not required for exploitation.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

ASB-A-376461726
CVE-2025-22432

Affected Products

Callredirectionprocessor.Java