Vulnerability Description
An Improper Access Control vulnerability in Advantech SUSI driver (susi.sys) allows attackers to read/write arbitrary memory, I/O ports, and MSRs, resulting in privilege escalation, arbitrary code execution, and information disclosure. This issue affects Advantech SUSI: 5.0.24335 and prior.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
FAQ
What is CVE-2025-14252?
CVE-2025-14252 is a vulnerability with a CVSS score of 7.8 (HIGH). An Improper Access Control vulnerability in Advantech SUSI driver (susi.sys) allows attackers to read/write arbitrary memory, I/O ports, and MSRs, resulting in privilege escalation, arbitrary code exe...
How severe is CVE-2025-14252?
CVE-2025-14252 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-14252?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.