CVE-2025-9059: Broadcom 8.6.it Management Suite
High severity, CVSS 8.8. EPSS: 0.1% chance of exploitation in the next 30 days.
The Altiris Core Agent Updater package (AeXNSC.exe) is prone to an elevation of privileges vulnerability through DLL hijacking.
Affected products
- Broadcom 8.6.it Management Suite: from 8.6, before 8.7 (fixed in 8.7); from 8.7, before 8.8 (fixed in 8.8); version 8.8 only
Published 2025-09-11. Last modified 2026-09-30.