MEDIUM · 6.5

CVE-2025-59714

In Internet2 Grouper 5.17.1 before 5.20.5, group admins who are not Grouper sysadmins can configure loader jobs.

Vulnerability Description

In Internet2 Grouper 5.17.1 before 5.20.5, group admins who are not Grouper sysadmins can configure loader jobs.

CVSS Score

6.5

MEDIUM

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
HIGH
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
NONE

Affected Products

VendorProductVersions
Internet2Grouper>= 5.17.1, < 5.20.5

Related Weaknesses (CWE)

References

FAQ

What is CVE-2025-59714?

CVE-2025-59714 is a vulnerability with a CVSS score of 6.5 (MEDIUM). In Internet2 Grouper 5.17.1 before 5.20.5, group admins who are not Grouper sysadmins can configure loader jobs.

How severe is CVE-2025-59714?

CVE-2025-59714 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2025-59714?

Check the references section above for vendor advisories and patch information. Affected products include: Internet2 Grouper.