PT-2025-54209 · Pangolin · Pangolin

Mrdgef

·

Published

2025-12-30

·

Updated

2026-01-01

·

CVE-2025-56332

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions Pangolin versions 1.6.2 and earlier
Description An authentication bypass exists in Pangolin versions 1.6.2 and before due to an insecure default configuration. This allows attackers to access Pangolin resources.
Recommendations Update Pangolin to a version later than 1.6.2.

Exploit

Fix

Weakness Enumeration

Related Identifiers

CVE-2025-56332

Affected Products

Pangolin