PT-2025-43990 · Bae Systems · Socet Gxp

Published

2025-10-27

·

Updated

2025-10-27

·

CVE-2025-54970

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions BAE SOCET GXP versions prior to 4.6.0.2
Description The SOCET GXP Job Status Service does not properly authenticate requests. This can allow remote or local users to perform actions, such as aborting jobs or reading information, without the necessary permissions.
Recommendations Update BAE SOCET GXP to version 4.6.0.2 or later.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2025-54970

Affected Products

Socet Gxp