A vulnerability exists in Progress Flowmon versions prior 12.5.6 where certain system configuration files have incorrect file permissions, allowing a user with access to the default flowmon system user account used for SSH access to potentially escalate privileges to root during service initialization.
References
Configurations
No configuration.
History
30 Oct 2025, 08:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-10-30 08:15
Updated : 2025-10-30 15:03
NVD link : CVE-2025-11906
Mitre link : CVE-2025-11906
CVE.ORG link : CVE-2025-11906
JSON object : View
Products Affected
No product.
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource
