HTTP DoS Vulnerability in Kron Technologies Kron PAM Affects User Resources
CVE-2025-5253

6.5MEDIUM

Key Information:

Status
Vendor
CVE Published:
25 July 2025

What is CVE-2025-5253?

A resource allocation vulnerability in Kron Technologies' Kron PAM software could allow attackers to exploit the system by launching HTTP Denial of Service (DoS) attacks. This flaw affects versions prior to 3.7, enabling potential disruptions to users by overwhelming available resources without proper throttling mechanisms.

Affected Version(s)

Kron PAM 0 < 3.7

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Taha Yildirim
TĂĽrk Telekom
.