6.2
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:L
Description
BullWall Server Intrusion Protection has a noticeable delay before the MFA check when connecting via RDP. A remote authenticated attacker with administrative privileges can potentially bypass detection during this window. Versions 4.6.0.0, 4.6.0.6, 4.6.0.7, and 4.6.1.4 were confirmed to be affected; other versions before and after may also be affected.
Basic Information
ID
CVE-2025-62003
Source
cisa-cg
Published
Dec 18, 2025 at 20:35
Modified
Dec 18, 2025 at 21:06
Affected Product
Vendor
BullWall
Product
Server Intrusion Protection
Version
4.6.0.0
Affected Versions
BullWall Server Intrusion Protection 4.6.0.0