Authorization Bypass in Broadcom DX NetOps Spectrum on Windows and Linux
CVE-2025-69274

2.3LOW

Key Information:

Vendor

Broadcom

Vendor
CVE Published:
12 January 2026

What is CVE-2025-69274?

The vulnerability present in Broadcom DX NetOps Spectrum on both Windows and Linux environments allows attackers to bypass authorization controls through user-controlled keys. This effectively grants them elevated privileges, enabling unauthorized access to sensitive functionalities within the software. It is crucial for users of DX NetOps Spectrum, especially those on versions 24.3.10 and earlier, to apply the necessary security updates to mitigate this risk and protect their systems from potential exploitation.

Affected Version(s)

DX NetOps Spectrum Windows 24.3.10 and earlier

DX NetOps Spectrum Windows 24.3.11 and later

References

CVSS V4

Score:
2.3
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Jean-Michel Huguet and Jorge Escabias from NATO Cyber Security Centre
.