Medium severity6.5NVD Advisory· Published Oct 27, 2025· Updated Jun 17, 2026
CVE-2025-54967
CVE-2025-54967
Description
An issue was discovered in BAE SOCET GXP before 4.6.0.3. It permits external entities in certain XML-based files. An attacker who is able to social engineer a SOCET GXP user into opening a malicious file can trigger a variety of outbound requests, potentially compromising sensitive information in the process.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3<4.6.0.3+ 1 more
- (no CPE)range: <4.6.0.3
- cpe:2.3:a:baesystems:socet_gxp:*:*:*:*:*:*:*:*range: <4.6.0.3
- BAE/SOCET GXPdescription
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.