CyberRota Analysis
This vulnerability has an unknown severity rating. See the original NVD description below for full technical details.
CVE
CVE-2025-10650
Severity
UNKNOWN
CVSS
N/A
EPSS
0.11%
Original NVD Description
SoftIron HyperCloud 2.5.0 through 2.6.3 may incorrectly add user SSH keys to the administrator-level authorized keys under certain conditions, allowing unauthorized privilege escalation to admin via SSH. Affects non-production debug and internal development builds created between versions 2.5.0 and 2.6.3. No generally available (GA) or customer-released production builds were affected. There is no evidence that this issue was exposed in customer environments or production deployments.