Security Advisory

CVE-2025-54969

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-10-27 00:00:00
Last updated 2025-10-27 18:49:53
Assigner mitre
State PUBLISHED

Description

An issue was discovered in BAE SOCET GXP before 4.6.0.2. The SOCET GXP Job Status Service does not implement CSRF protections. An attacker who social engineers a valid user into clicking a malicious link or visiting a malicious website may be able to submit requests to the Job Status Service without the users knowledge.