Authentication Strategy Vulnerability in Broadcom's PAM Products
CVE-2025-24506
Key Information:
- Vendor
Broadcom
- Vendor
- CVE Published:
- 30 January 2025
What is CVE-2025-24506?
A flaw in the authentication strategy deployed in Broadcom's PAM products exposes the unique identifiers of users associated with specific authentication types. This could enable unauthorized parties to infer sensitive user associations, thereby compromising user data integrity and privacy. Organizations using affected versions are encouraged to review their configurations and apply relevant security measures to mitigate potential risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Symantec Privileged Access Management 3.4.6
Symantec Privileged Access Management 3.4.6
Symantec Privileged Access Management 4.1.0 <= 4.1.8
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved