CVE-2025-9059: Broadcom 8.6.it Management Suite

High severity, CVSS 8.8. EPSS: 0.1% chance of exploitation in the next 30 days.

The Altiris Core Agent Updater package (AeXNSC.exe) is prone to an elevation of privileges vulnerability through DLL hijacking.

Affected products

  • Broadcom 8.6.it Management Suite: from 8.6, before 8.7 (fixed in 8.7); from 8.7, before 8.8 (fixed in 8.8); version 8.8 only

Published 2025-09-11. Last modified 2026-09-30.