PT-2025-43990 · Bae Systems · Socet Gxp
Published
2025-10-27
·
Updated
2025-10-27
·
CVE-2025-54970
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
BAE SOCET GXP versions prior to 4.6.0.2
Description
The SOCET GXP Job Status Service does not properly authenticate requests. This can allow remote or local users to perform actions, such as aborting jobs or reading information, without the necessary permissions.
Recommendations
Update BAE SOCET GXP to version 4.6.0.2 or later.
Fix
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Socet Gxp