Vulnerability Description
DCIM dcTrack allows an attacker to misuse certain remote access features. An authenticated user with access to the appliance's virtual console could exploit these features to redirect network traffic, potentially accessing restricted services or data on the host machine.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2025/icsa-25-33
- https://www.cisa.gov/news-events/ics-advisories/icsa-25-338-05
FAQ
What is CVE-2025-66238?
CVE-2025-66238 is a vulnerability with a CVSS score of 7.2 (HIGH). DCIM dcTrack allows an attacker to misuse certain remote access features. An authenticated user with access to the appliance's virtual console could exploit these features to redirect network traffic,...
How severe is CVE-2025-66238?
CVE-2025-66238 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-66238?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.