CVE-2025-8352
6.9
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N
Summary
Allocation of resources without limits or throttling vulnerability in ESET PROTECT On-Prem increased resource consumption (CPU and RAM), leading to conditions for a Denial-of-Service attack.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| ESET spol. s.r.o | ESET PROTECT On-Prem | 0 <= 12.1.9.0 (with Web Console 12.1.252.0) | affected |
| ESET spol. s.r.o | ESET PROTECT On-Prem | 0 <= 12.0.13.0 (with Web Console 12.0.289.0) | affected |
| ESET spol. s.r.o | ESET PROTECT On-Prem | 0 <= 11.1.16.0 (with Web Console 11.1.149.0) | affected |
Weaknesses
- CWE-770: CWE-770 Allocation of resources without limits or throttling
ADP Enrichment
CISA ADP Vulnrichment
- SSVC:
- Exploitation: none
- Automatable: yes
- Technical Impact: partial
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.