Critical severityNVD Advisory· Published Nov 7, 2025· Updated Apr 15, 2026
CVE-2025-11546
CVE-2025-11546
Description
CLUSTERPRO X for Linux 4.0, 4.1, 4.2, 5.0, 5.1 and 5.2 and EXPRESSCLUSTER X for Linux 4.0, 4.1, 4.2, 5.0, 5.1 and 5.2, CLUSTERPRO X SingleServerSafe for Linux 4.0, 4.1, 4.2, 5.0, 5.1 and 5.2, EXPRESSCLUSTER X SingleServerSafe for Linux 4.0, 4.1, 4.2, 5.0, 5.1 and 5.2 allows an attacker sends specially crafted network packets to the product, arbitrary OS commands may be executed without authentication.
Affected products
3- Range: 4.0, 4.1, 4.2, 5.0, 5.1, 5.2
- Range: 4.0, 4.1, 4.2, 5.0, 5.1, 5.2
- Range: 4.0, 4.1, 4.2, 5.0, 5.1, 5.2
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.