PT-2025-46891 · Apple · Compressor

Published

2025-11-13

·

Updated

2025-11-14

·

CVE-2025-43515

CVSS v3.1
8.8
VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Compressor versions prior to 4.11.1
Description An unauthenticated user on the same network as a Compressor server may be able to execute arbitrary code. The issue was addressed by refusing external connections by default.
Recommendations Update to Compressor version 4.11.1.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

BDU:2025-14686
CVE-2025-43515

Affected Products

Compressor