AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2025-59683

HIGH · CVSS 8.2 EPSS 0.29%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-12-25 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 8.2. It affects Exchange, Office. It may be remotely exploitable. It may lead to a denial-of-service condition.

CVE
CVE-2025-59683
Severity
HIGH
CVSS
8.2
EPSS
0.29%
Exchange Office

Original NVD Description

Pexip Infinity 15.0 through 38.0 before 38.1 has Improper Access Control in the Secure Scheduler for Exchange service, when used with Office 365 Legacy Exchange Tokens. This allows a remote attacker to read potentially sensitive data and excessively consume resources, leading to a denial of service.

Related CVEs

Other vulnerabilities affecting the same vendor(s)