CVE-2025-3497
BaseFortify
Publication date: 2025-07-09
Last updated on: 2025-07-10
Assigner: ENISA
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| centos | centos | 7 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-1104 | The product relies on third-party components that are not actively supported or maintained by the original developer or a trusted proxy for the original developer. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability arises because the Linux distribution used by the Radiflow iSAP Smart Collector (CentOS 7 - VSAP 1.20) is obsolete and reached its end of life on June 30, 2024. As a result, it no longer receives security updates or patches, leaving the system exposed to potential exploits that could compromise the product.
How can this vulnerability impact me? :
The impact of this vulnerability could be significant, as unmitigated exploits may lead to high integrity and availability impacts on the affected product. This means attackers could potentially alter system functions or cause system outages, disrupting operations.