CVE-2025-4364General

LOWCVSS 8.7 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

The affected products could allow an unauthenticated attacker to access system information that could enable further access to sensitive files and obtain administrative credentials.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-497

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 1 signal
  • General: 2 classified signals
  • Disclosure: 1 classified signal
  • Peaked 2d ago at 1 mentions (2026-04-18); latest day: 1
  • 3 total mentions across 3 days

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-04-18: 1Mentions · 2026-04-20: 1Mentions · 2026-05-07: 1Technical Details · 2026-04-20: 104-1804-2005-07
Signal classification2 categories
General
266.7%
Disclosure
133.3%
Classification over time
DateTotalLabels
2026-04-181
Disclosure1
2026-04-201
General1
2026-05-071
General1
Full discourse3 posts
  • NuClide@n15647931
    General

    @ANeuroExplorer ICSA-25-140-11 CVE-2025-4364

    Post summary

    The tweet merely references CVE-2025-4364 and an ICSA advisory (ICSA-25-140-11) without providing any additional information about the vulnerability or its exploitation.

    00000970
    48 followersView on X
  • NuClide@n15647931
    General

    CVE-2025-4364. A base score of 8.7 has been calculated CRITICAL INFRASTRUCTURE: Transportation Systems COUNTRIES/AREAS DEPLOYED: Worldwide my 1st credited cve 🥲

    Post summary

    The text announces CVE‑2025‑4364 with a high CVSS score and global relevance, but offers no technical, exploit, or mitigation details.

    00000269
    46 followersView on X
  • NuClide@n15647931
    Disclosure

    CVE-2025-4364 / ICSA-25-140-11 — CISA-credited, CVSS 8.7, critical transportation infrastructure fleet management system.

    Post summary

    The text announces CVE‑2025‑4364 as a CISA‑credited, high‑severity (CVSS 8.7) vulnerability in a critical transportation infrastructure fleet management system, without further technical, exploit, or mitigation details.

    00000437
    46 followersView on X

Explore more