Vulnerability Description
RayVentory Scan Engine through 12.6 Update 8 allows attackers to gain privileges if they control the value of the PATH environment variable. NOTE: this is disputed because ability of an attacker to control the environment is a site-specific misconfiguration.
CVSS Score
CRITICAL
Related Weaknesses (CWE)
References
- https://github.com/Wise-Security/CVE-2025-69599
- https://support.raynet.de/hc/en-us/articles/19518792826132-RVY200865-RayVentory-
- https://github.com/Wise-Security/CVE-2025-69599
FAQ
What is CVE-2025-69599?
CVE-2025-69599 is a vulnerability with a CVSS score of 9.8 (CRITICAL). RayVentory Scan Engine through 12.6 Update 8 allows attackers to gain privileges if they control the value of the PATH environment variable. NOTE: this is disputed because ability of an attacker to co...
How severe is CVE-2025-69599?
CVE-2025-69599 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2025-69599?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.