Security Advisory

CVE-2025-2171

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-06-23 14:01:07
Last updated 2025-06-23 20:48:28
Assigner Mandiant
CVSS score 7.8
State PUBLISHED

Description

Aviatrix Controller versions prior to 7.1.4208, 7.2.5090, and 8.0.0 do not enforce rate limiting on password reset attempts, allowing adversaries to brute force guess the 6-digit password reset PIN