8.5
/ 10
HIGH
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X
Description
A vulnerability has been found in Radarr 5.28.0.10274. The affected element is an unknown function of the file C:\ProgramData\Radarr\bin\Radarr.Console.exe of the component Service. Such manipulation leads to incorrect default permissions. The attack can only be performed from a local environment. The vendor was contacted early about this disclosure but did not respond in any way.
AI Analysis
Incorrect default permissions vulnerability in Radarr Service
Basic Information
ID
CVE-2025-13130
Source
VulDB
Published
Nov 13, 2025 at 22:02
Affected Product
Vendor
n/a
Product
Radarr
Version
5.28.0.10274
Affected Versions
n/a Radarr 5.28.0.10274
CWE Classification
AI Assessment
AI Score
8.5 / 10
AI Severity
High
Vendor
Radarr
Product
Radarr Service
Version
5.28.0.10274