CVE-2025-6083: Extremenetworks Extremecloud Universal Ztna
Medium severity, CVSS 4.3. EPSS: 0.2% chance of exploitation in the next 30 days.
In ExtremeCloud Universal ZTNA, a syntax error in the 'searchKeyword' condition caused queries to bypass the owner_id filter. This issue may allow users to search data across the entire table instead of being restricted to their specific owner_id.
Affected products
- Extremenetworks Extremecloud Universal Ztna: before 25.2.0 (fixed in 25.2.0); version 25.2.0 only
Published 2025-06-13. Last modified 2026-06-17.