8.8
/ 10
HIGH
CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/S:P/AU:Y/R:A/V:C/RE:M/U:Red
Description
The Altiris Core Agent Updater package (AeXNSC.exe) is prone to an elevation of privileges vulnerability through DLL hijacking.
Basic Information
ID
CVE-2025-9059
Source
symantec
Published
Sep 11, 2025 at 05:18
Affected Product
Vendor
Broadcom
Product
8.6.IT Management Suite
Version
8.6.x
Affected Versions
Broadcom 8.6.IT Management Suite 8.6.x
Broadcom 8.6.IT Management Suite 8.7.x
Broadcom 8.6.IT Management Suite 8.8
Broadcom 8.6.IT Management Suite 8.7.x
Broadcom 8.6.IT Management Suite 8.8