Command Execution Vulnerability in Zenitel ICX500 and ICX510 Gateway
CVE-2025-59815

9.1CRITICAL

Key Information:

Vendor

Zenitel

Vendor
CVE Published:
25 September 2025

What is CVE-2025-59815?

A security flaw exists within the Zenitel ICX500 and ICX510 Gateway that allows attackers to remotely execute arbitrary commands on the underlying system. This vulnerability can lead to unauthorized access, ultimately compromising the device's availability, confidentiality, and integrity. It is crucial for users to apply patches and updates to mitigate potential risks associated with this issue.

Affected Version(s)

ICX500 <1.4.3.3

ICX510 <1.4.3.3

References

CVSS V3.1

Score:
9.1
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-59815 : Command Execution Vulnerability in Zenitel ICX500 and ICX510 Gateway