CVE-2025-3114
Published: Apr 9, 2025
Modified: Apr 15, 2025
Description
Code Execution via Malicious Files: Attackers can create specially crafted files with embedded code that may execute without adequate security validation, potentially leading to system compromise. Sandbox Bypass Vulnerability: A flaw in the TERR security mechanism allows attackers to bypass sandbox restrictions, enabling the execution of untrusted code without appropriate controls.
| Vendor | Product | Versions |
|---|---|---|
Spotfire | Spotfire Enterprise Runtime for R | affected 6 - <= 1.4 |
Spotfire | Spotfire Statistics Services | affected 14 - <= 0.6affected 14.1.0affected 14.2.0affected 14.3.0affected 14.4.0+1 more versions |
Spotfire | Spotfire Analyst | affected 14 - <= 0.5affected 14.1.0affected 14.2.0affected 14.3.0affected 14.4.0+1 more versions |
Spotfire | Deployment Kit used in Spotfire Server | affected 14 - <= 0.6affected 14.1.0affected 14.2.0affected 14.3.0affected 14.4.0+1 more versions |
Spotfire | Spotfire Desktop | affected 14 - <= 4.1 |
Spotfire | Spotfire for AWS Marketplace | unknown 14 - <= 4.1 |
Spotfire | Spotfire Enterprise Runtime for R - Server Edition | affected 1 - <= 17.6affected 1.18.0affected 1.19.0affected 1.20.0affected 1.21.0+1 more versions |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now