CVE-2025-69274
Unknown
Unknown - Not Provided
Authorization Bypass in Broadcom DX NetOps Spectrum Enables Privilege Escalation
Publication date: 2026-01-12
Last updated on: 2026-01-12
Assigner: CA Technologies - A Broadcom Company
Description
Description
Authorization Bypass Through User-Controlled Key vulnerability in Broadcom DX NetOps Spectrum on Windows, Linux allows Privilege Escalation.This issue affects DX NetOps Spectrum: 24.3.10 and earlier.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| broadcom | dx_netops_spectrum | to 24.3.10 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-639 | The system's authorization functionality does not prevent one user from gaining access to another user's data or record by modifying the key value identifying the data. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability is an Authorization Bypass Through User-Controlled Key in Broadcom DX NetOps Spectrum on Windows and Linux. It allows privilege escalation by bypassing authorization controls due to manipulation of a user-controlled key. It affects versions 24.3.10 and earlier.
How can this vulnerability impact me? :
This vulnerability can allow an attacker with limited privileges to escalate their privileges, potentially gaining unauthorized access or control over the affected system.
Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70