CVE-2025-63909: Cohesity Tranzman

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

Incorrect access control in the component /opt/SRLtzm/bin/TapeDumper of Cohesity TranZman Migration Appliance Release 4.0 Build 14614 allows attackers to escalate privileges to root and read and write arbitrary files.

Affected products

Published 2026-03-03. Last modified 2026-06-17.