SOOP-CLM developed by PiExtract has a Server-Side Request Forgery vulnerability, allowing privileged remote attackers to read server files or probe internal network information.
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Mon, 13 Oct 2025 08:00:00 +0000

Type Values Removed Values Added
Description SOOP-CLM developed by PiExtract has a Server-Side Request Forgery vulnerability, allowing privileged remote attackers to read server files or probe internal network information.
Title PiExtract|SOOP-CLM - Server-Side Request Forgery
Weaknesses CWE-918
References
Metrics cvssV3_1

{'score': 6.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N'}

cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:N/VA:N/SC:L/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: twcert

Published:

Updated: 2025-10-13T07:44:41.429Z

Reserved: 2025-10-13T05:59:30.569Z

Link: CVE-2025-11674

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2025-10-13T08:15:40.920

Modified: 2025-10-13T08:15:40.920

Link: CVE-2025-11674

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.