CVE-2025-62001: Bullwall Ransomware Containment
High severity, CVSS 8.8. EPSS: 0.4% chance of exploitation in the next 30 days.
BullWall Ransomware Containment supports configurable file and directory exclusions such as '$RECYCLE.BIN' to balance monitoring scope and performance. Certain exclusion patterns could allow an authenticated attacker to rename directories in a way that avoids monitoring. Fixed in 4.6.1.14 and 5.0.0.42, which remove hardcoded exclusion behavior and exposes exclusion handling as configurable settings.
Affected products
- Bullwall Ransomware Containment: version 4.6.0.0 only; version 4.6.0.6 only; version 4.6.0.7 only; version 4.6.1.4 only
Published 2025-12-18. Last modified 2026-06-17.