VULNERABILITY INTELLIGENCE

CVE-2025-21028

CVSS score5.5 MEDIUM
EPSS probability0.11%
CISA KEVNot currently listed
Published2025-09-03
Last modified2026-09-30
CVSS vectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

Description

Improper privilege management in ThemeManager prior to SMR Sep-2025 Release 1 allows local privileged attackers to reuse trial items.

Primary references