CVE-2025-8352

Summary

Allocation of resources without limits or throttling vulnerability in ESET PROTECT On-Prem increased resource consumption (CPU and RAM), leading to conditions for a Denial-of-Service attack.

Affected Software

VendorProductVersion RangeStatus
ESET spol. s.r.oESET PROTECT On-Prem0 <= 12.1.9.0 (with Web Console 12.1.252.0)affected
ESET spol. s.r.oESET PROTECT On-Prem0 <= 12.0.13.0 (with Web Console 12.0.289.0)affected
ESET spol. s.r.oESET PROTECT On-Prem0 <= 11.1.16.0 (with Web Console 11.1.149.0)affected

Weaknesses

  • CWE-770: CWE-770 Allocation of resources without limits or throttling

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: yes
    • Technical Impact: partial

References