Information Exposure Through Query Strings in GET Request vulnerability in Broadcom DX NetOps Spectrum on Windows, Linux allows Session Hijacking.This issue affects DX NetOps Spectrum: 24.3.8 and earlier.
References
| Link | Resource |
|---|---|
| https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/36756 | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
14 Jan 2026, 17:56
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Linux
Broadcom Microsoft Microsoft windows Broadcom dx Netops Spectrum Linux linux Kernel |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
| CPE | cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* cpe:2.3:a:broadcom:dx_netops_spectrum:*:*:*:*:*:*:*:* |
|
| References | () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/36756 - Vendor Advisory |
12 Jan 2026, 05:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-01-12 05:16
Updated : 2026-01-14 17:56
NVD link : CVE-2025-69270
Mitre link : CVE-2025-69270
CVE.ORG link : CVE-2025-69270
JSON object : View
Products Affected
broadcom
- dx_netops_spectrum
microsoft
- windows
linux
- linux_kernel
CWE
CWE-598
Use of GET Request Method With Sensitive Query Strings
