{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-17T10:21:04.943","vulnerabilities":[{"cve":{"id":"CVE-2025-22495","sourceIdentifier":"CybersecurityCOE@eaton.com","published":"2025-02-24T17:15:13.723","lastModified":"2026-04-15T00:35:42.020","vulnStatus":"Deferred","cveTags":[{"sourceIdentifier":"CybersecurityCOE@eaton.com","tags":["unsupported-when-assigned"]}],"descriptions":[{"lang":"en","value":"An improper input validation vulnerability was discovered in the NTP server configuration field of the Network-M2 card. This could result in an authenticated high privileged user having the ability to execute arbitrary commands. The vulnerability has been resolved in the version 3.0.4. \nNote - Network-M2 has been declared end-of-life in early 2024 and Network-M3 has been released as a fit-and-functional replacement."},{"lang":"es","value":" Se descubrió una vulnerabilidad de validación de entrada incorrecta en el campo de configuración del servidor NTP de la tarjeta Network-M2. Esto podría provocar que un usuario autenticado con privilegios elevados tenga la capacidad de ejecutar comandos arbitrarios. La vulnerabilidad se ha resuelto en la versión 3.0.4. Nota: Network-M2 ha sido declarado fuera de servicio a principios de 2024 y Network-M3 se ha lanzado como un reemplazo funcional y adecuado."}],"metrics":{"cvssMetricV31":[{"source":"CybersecurityCOE@eaton.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H","baseScore":8.4,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"HIGH","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":1.7,"impactScore":6.0}]},"weaknesses":[{"source":"CybersecurityCOE@eaton.com","type":"Secondary","description":[{"lang":"en","value":"CWE-78"}]}],"references":[{"url":"https://www.eaton.com/content/dam/eaton/company/news-insights/cybersecurity/security-bulletins/etn-va-2025-1004.pdf","source":"CybersecurityCOE@eaton.com"},{"url":"https://www.eaton.com/content/dam/eaton/products/backup-power-ups-surge-it-power-distribution/power-management-software-connectivity/eaton-gigabit-network-card/Network-M2%20EOL.pdf","source":"CybersecurityCOE@eaton.com"}]}}]}