Home

Description

An issue was discovered in BAE SOCET GXP before 4.6.0.2. The SOCET GXP Job Status Service fails to authenticate requests. In some configurations, this may allow remote or local users to abort jobs or read information without the permissions of the job owner.

PUBLISHED Reserved 2025-08-04 | Published 2025-10-27 | Updated 2025-10-28 | Assigner mitre

References

www.baesystems.com/...oduct/geospatial-exploitation-products

www.geospatialexploitationproducts.com/...lities-disclosure/

cve.org (CVE-2025-54970)

nvd.nist.gov (CVE-2025-54970)

Download JSON