CVE-2025-64129
Unknown Unknown - Not Provided
BaseFortify

Publication date: 2025-11-26

Last updated on: 2025-11-26

Assigner: ICS-CERT

Description
Zenitel TCIV-3+ is vulnerable to an out-of-bounds write vulnerability, which could allow a remote attacker to crash the device.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2025-11-26
Last Modified
2025-11-26
Generated
2026-06-16
AI Q&A
2025-11-26
EPSS Evaluated
2026-06-15
NVD
EUVD
Affected Vendors & Products
Showing 1 associated CPE
Vendor Product Version / Range
zenitel tciv-3+ 4.0
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-787 The product writes data past the end, or before the beginning, of the intended buffer.
Attack-Flow Graph
AI Quick Actions
Instant insights powered by AI
Executive Summary

This vulnerability is an out-of-bounds write in the Zenitel TCIV-3+ device, which means that an attacker can write data outside the intended memory boundaries. This flaw could allow a remote attacker to crash the device.

Impact Analysis

The vulnerability could allow a remote attacker to crash the Zenitel TCIV-3+ device, potentially causing denial of service or disruption of the device's normal operation.

Chat Assistant
Ask questions about this CVE
Hi! I’m here to help you understand CVE-2025-64129. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70
EPSS Chart