CVE-2025-54547
On affected platforms, if SSH session multiplexing was configured on the client side, SSH sessions (e.g, scp, sftp) multiplexed onto the same channel could perform file-system operations after a configured session timeout expired
Vexday Risk Score
13Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 5.3EPSS 0.1%KEV nãoPoC —Patch —
Ciclo de vida
29 oct 2025Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
On affected platforms, if SSH session multiplexing was configured on the client side, SSH sessions (e.g, scp, sftp) multiplexed onto the same channel could perform file-system operations after a configured session timeout expired
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Productos afectados
Arista Networks · DANZ Monitoring Fabric¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →