CVE 8.6 HIGH

Harvester’s SUSE Virtualization Registration Client Vulnerable to MITM and DOS_CVE-2025-71261

8.6 / 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H

Description

An attacker with network-level access between the SUSE Virtualization
and Rancher Manager in SUSE Harvester before 1.8.0 could interfere with the TLS handshake and abuse it
to bypass TLS as a security control.

AI Analysis

Man-in-the-middle (MITM) vulnerability in SUSE Harvester before 1.8.0, allowing an attacker to bypass TLS security control.

Basic Information

ID CVE-2025-71261
Source suse
Published Jun 16, 2026 at 15:42

Affected Product

Vendor SUSE
Product Harvester
Affected Versions SUSE Harvester 0

CWE Classification

AI Assessment

AI Score 8.6 / 10
AI Severity High
Vendor SUSE
Product Harvester
Version before 1.8.0

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.