Back to Database
Status published
Medium
CVE-2025-52923
Sangfor aTrust through 2.4.10 allows users to modify the ExecStartPre...
Vulnerability Description
Sangfor aTrust through 2.4.10 allows users to modify the ExecStartPre command.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-52923
Credits & Attribution
No credits recorded in the NVD database.
References
More from Sangfor
View All →CVE-2025-5129
Sangfor 零信任访问控制系统 aTrust MSASN1.dll uncontrolled search path
High
7.3
CVE-2025-15503
Sangfor Operation and Maintenance Management System common.jsp unrestricted upload
Medium
6.9
CVE-2025-15502
Sangfor Operation and Maintenance Management System session SessionController os command injection
Medium
6.9
CVE-2025-15501
Sangfor Operation and Maintenance Management System getCmd WriterHandle.getCmd os command injection
Critical
9.3
CVE-2025-15500
Sangfor Operation and Maintenance Management System HTTP POST Request getHis os command injection
Critical
9.3
Affected Vendor
Sangfor
View all reports →Affected Software
aTrust
Vulnerable Versions:
2.4.10
Timeline
Official Publish:
June 22nd, 2025
Last Modified:
June 23rd, 2025
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N