CVE-2025-54970: Baesystems Socet Gxp

Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.

An issue was discovered in BAE SOCET GXP before 4.6.0.2. The SOCET GXP Job Status Service fails to authenticate requests. In some configurations, this may allow remote or local users to abort jobs or read information without the permissions of the job owner.

Affected products

  • Baesystems Socet Gxp: before 4.6.0.2 (fixed in 4.6.0.2)

Published 2025-10-27. Last modified 2026-06-17.