CVE 9.4 CRITICAL

Nuvation Energy nCloud Client-to-Client Communication_CVE-2025-64125

9.4 / 10
CRITICAL
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/S:P

Description

A vulnerability in Nuvation Energy nCloud VPN Service allowed Network Boundary Bridging.This issue affected the nCloud VPN Service and was fixed on 2025-12-1 (December, 2025). End users do not have to take any action to mitigate the issue.

AI Analysis

Vulnerability allowing Network Boundary Bridging in Nuvation Energy nCloud VPN Service

Basic Information

ID CVE-2025-64125
Source Dragos
Published Jan 3, 2026 at 00:21

Affected Product

Vendor Nuvation Energy
Product nCloud VPN Service
Version 2025-12-1
Affected Versions Nuvation Energy nCloud VPN Service 2025-12-1

CWE Classification

AI Assessment

AI Score 9.4 / 10
AI Severity Critical
Vendor Nuvation Energy
Product nCloud VPN Service
Version 2025-12-1

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.