CVE-2025-10941
BaseFortify
Publication date: 2025-09-25
Last updated on: 2025-09-30
Assigner: VulDB
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| topaz | servcore_teller | 2.14.1 |
| topaz | servcore_teller | 2.14.0-rc2 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-275 | Permission Issues |
| CWE-266 | A product incorrectly assigns a privilege to a particular actor, creating an unintended sphere of control for that actor. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability exists in Topaz SERVCore Teller versions 2.14.0-RC2 and 2.14.1, specifically in the Installer component's file SERVCoreTeller_2.0.40D.msi. It allows a local attacker to perform manipulations that lead to permission issues, potentially granting elevated access or control over the affected system.
How can this vulnerability impact me? :
The vulnerability can impact you by allowing a local attacker with some level of access to manipulate the system's permissions, potentially leading to full compromise of confidentiality, integrity, and availability of the affected system or data.