CVE-2025-53118CRITICAL 9.8EPSS p98.0%
CVE-2025-53118CVE-2025-53118
Description
An authentication bypass vulnerability exists which allows an unauthenticated attacker to control administrator backup functions, leading to compromise of passwords, secrets, and application session tokens stored by the Unified PAM.
Scoring
| CVSS 3.1 | 9.8 (CRITICAL) |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 29.46% probability of exploitation · percentile 98.0% · 2026-08-03T12:00:16Z |
| Published | 2025-08-25 |
| Last modified | 2026-04-15 |
Underlying weaknesses· 1
References
1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Missing Authentication for Critical Functioncwe-306 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.