CVE-2025-66446 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

MaxKB is an open-source AI assistant for enterprise. Versions 2.3.1 and below have improper file permissions which allow attackers to overwrite the built-in dyn…
High CVSS: 8.8

CVE-2025-66446

MaxKB is an open-source AI assistant for enterprise. Versions 2.3.1 and below have improper file permissions which allow attackers to overwrite the built-in dynamic linker and other critical files, potentially resulting in privilege escalation. This issue is fixed in version 2.4.0.
Vendor
Maxkb
Product
Maxkb
CWE
CWE-362
Yayın Tarihi
2025-12-11 22:15:55
Güncelleme
2025-12-15 17:58:54
Source Identifier
security-advisories@github.com
KEV Date Added
-

Kategoriler

Referanslar