CVE-2025-3719: Nozominetworks Cmc
High severity, CVSS 8.1. EPSS: 0.3% chance of exploitation in the next 30 days.
An access control vulnerability was discovered in the CLI functionality due to a specific access restriction not being properly enforced for users with limited privileges. An authenticated user with limited privileges can issue administrative CLI commands, altering the device configuration, and/or affecting its availability.
Affected products
- Nozominetworks Cmc: before 25.2.0 (fixed in 25.2.0)
- Nozominetworks Guardian: before 25.2.0 (fixed in 25.2.0)
Published 2025-10-07. Last modified 2026-06-17.