CVE-2025-7024

Incorrect Default Permissions vulnerability in AIRBUS PSS TETRA Connectivity Server on Windows Server OS allows Privilege Abuse. An attacker may execute arbitrary code with SYSTEM privileges if a user is tricked or directed to place a crafted file into the vulnerable directory. This issue affects TETRA connectivity Server: 7.0. Vulnerability fix is available and delivered to impacted customers.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:airbus:tetra_connectivity_server:7.0:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

27 May 2026, 13:39

Type Values Removed Values Added
CPE cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:a:airbus:tetra_connectivity_server:7.0:*:*:*:*:*:*:*
First Time Microsoft
Airbus
Airbus tetra Connectivity Server
Microsoft windows
References () https://cwe.mitre.org/data/definitions/276.html - () https://cwe.mitre.org/data/definitions/276.html - Not Applicable

03 Apr 2026, 08:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-04-03 08:16

Updated : 2026-05-27 13:39


NVD link : CVE-2025-7024

Mitre link : CVE-2025-7024

CVE.ORG link : CVE-2025-7024


JSON object : View

Products Affected

airbus

  • tetra_connectivity_server

microsoft

  • windows
CWE
CWE-276

Incorrect Default Permissions