8.7

CVE-2025-3497

The Linux distribution underlying the Radiflow iSAP Smart Collector 
(CentOS 7 - VSAP 1.20) is obsolete and 
reached end of life (EOL) on
June 30, 2024.  Thus, any 
unmitigated vulnerability could be exploited to affect this product.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
VendorRadiflow
Product iSAP Smart Collector
Default Statusunaffected
Version < 3.02-1
Version 1.20
Status affected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.07% 0.217
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
a6d3dc9e-0591-4a13-bce7-0f5b31ff6158 8.7 2.3 5.8
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:N/I:H/A:H
CWE-1104 Use of Unmaintained Third Party Components

The product relies on third-party components that are not actively supported or maintained by the original developer or a trusted proxy for the original developer.