9.8
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Description
Improper configuration of the SSH service in Infinera MTC-9 allows an unauthenticated attacker to execute arbitrary commands and access data on file system
.
This issue affects MTC-9: from R22.1.1.0275 before R23.0.
.
This issue affects MTC-9: from R22.1.1.0275 before R23.0.
AI Analysis
Unauthenticated arbitrary command execution and file system access due to improper SSH configuration
Basic Information
ID
CVE-2025-27020
Source
ENISA
Published
Dec 8, 2025 at 09:26
Affected Product
Vendor
Infinera
Product
MTC-9
Version
R22.1.1.0275
Affected Versions
Infinera MTC-9 R22.1.1.0275
CWE Classification
AI Assessment
AI Score
9.8 / 10
AI Severity
Critical
Vendor
Infinera
Product
MTC-9
Version
R22.1.1.0275