cbcvebase.
CVE-2025-49152
published 2025-06-25

CVE-2025-49152: The affected products contain JSON Web Tokens (JWT) that do not expire, which could allow an attacker to gain access to the system.

PriorityP349high8.7CVSS 4.0
AVNACLATNPRNUINVCNVIHVANSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
EPSS
0.45%
35.8th percentile
The affected products contain JSON Web Tokens (JWT) that do not expire, which could allow an attacker to gain access to the system.

Affected

1 ranges
VendorProductVersion rangeFixed in
microsensnmp_web<= Version 3.2.5
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.