CVE-2025-7024
Severity CVSS v4.0:
MEDIUM
Type:
Unavailable / Other
Publication date:
03/04/2026
Last modified:
03/04/2026
Description
Incorrect Default Permissions vulnerability in AIRBUS PSS TETRA Connectivity Server on Windows Server OS allows Privilege Abuse.<br />
<br />
<br />
An attacker may execute arbitrary code with SYSTEM privileges if a user is tricked or directed to place a crafted file into the vulnerable directory.<br />
<br />
This issue affects TETRA connectivity Server: 7.0.<br />
<br />
<br />
Vulnerability fix is available and delivered to impacted customers.
Impact
Base Score 4.0
5.60
Severity 4.0
MEDIUM
Base Score 3.x
7.30
Severity 3.x
HIGH



