CVE-2025-6083: Extremenetworks Extremecloud Universal Ztna

Medium severity, CVSS 4.3. EPSS: 0.2% chance of exploitation in the next 30 days.

In ExtremeCloud Universal ZTNA, a syntax error in the 'searchKeyword' condition caused queries to bypass the owner_id filter. This issue may allow users to search data across the entire table instead of being restricted to their specific owner_id.

Affected products

  • Extremenetworks Extremecloud Universal Ztna: before 25.2.0 (fixed in 25.2.0); version 25.2.0 only

Published 2025-06-13. Last modified 2026-06-17.