Vulnerabilities
CVE-2025-62004 - BullWall Server Intrusion Protection initialization race condition
CVE ID : CVE-2025-62004 Published : Dec. 18, 2025, 9:15 p.m. | 34 minutes ago Description : BullWall Server Intrusion Protection services are initialized after login services. An authenticated attacker with administrative permissions can log in after boot and bypass MFA. SIP service does not retroactively enforce the challenge or disconnect unauthenticated sessions. Versions 4.6.0.0, 4.6.0.6, 4.6.0.7, and 4.6.1.4 were confirmed to be affected; other versions before and after may also be affected. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE Details
Source: Telegram CVE Monitor