CVE Database
/

CVE-2025-14213

Back to search

CVE-2025-14213

Published: Mar 31, 2026

Modified: Mar 31, 2026

PUBLISHED

Description

Cato Networks’ Socket versions prior to 25 contain a command injection vulnerability that allows an authenticated attacker with access to the Socket web interface (UI) to execute arbitrary operating system commands as the root user on the Socket’s internal system.

VendorProductVersions

Cato Networks

Socket

affected
24 and below

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now