CVE-2025-25598: Inovalogic Customer Monitor

High severity, CVSS 8.8. EPSS: 0.4% chance of exploitation in the next 30 days.

Incorrect access control in the scheduled tasks console of Inova Logic CUSTOMER MONITOR (CM) v3.1.757.1 allows attackers to escalate privileges via placing a crafted executable into a scheduled task.

Affected products

  • Inovalogic Customer Monitor: version 3.1.757.1 only

Published 2025-03-13. Last modified 2026-06-17.