CVE-2025-10650 - Non-admin users may erroneously be granted cluster-level SSH access
CVE ID : CVE-2025-10650
Published : Sept. 18, 2025, 7:15 p.m. | 1 hour ago
Description : SoftIron HyperCloud 2.5.0 through 2.6.3 may incorrectly add user SSH keys to the administrator-level authorized keys under certain conditions, allowing unauthorized privilege escalation to admin via SSH.
Severity: 8.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Sept. 18, 2025, 7:15 p.m. | 1 hour ago
Description : SoftIron HyperCloud 2.5.0 through 2.6.3 may incorrectly add user SSH keys to the administrator-level authorized keys under certain conditions, allowing unauthorized privilege escalation to admin via SSH.
Severity: 8.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...