Denial-of-Service Vulnerability in ESET PROTECT On-Prem by ESET
CVE-2025-8352

6.9MEDIUM

Key Information:

Vendor
CVE Published:
6 October 2026

What is CVE-2025-8352?

A resource allocation vulnerability exists in ESET PROTECT On-Prem that allows an attacker to exploit the system's resource consumption thresholds, potentially leading to an overload of CPU and RAM. This overload can create conditions conducive to a denial-of-service attack, effectively disrupting service availability and degrading system performance. Users of affected versions should apply the necessary patches to mitigate this risk.

Affected Version(s)

ESET PROTECT On-Prem 0 <= 12.1.9.0 (with Web Console 12.1.252.0)

ESET PROTECT On-Prem 0 <= 12.0.13.0 (with Web Console 12.0.289.0)

ESET PROTECT On-Prem 0 <= 11.1.16.0 (with Web Console 11.1.149.0)

References

CVSS V4

Score:
6.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.