CVE-2025-59683
EUVD-2025-20537025.12.2025, 05:16
Pexip Infinity 15.0 through 38.0 before 38.1 has Improper Access Control in the Secure Scheduler for Exchange service, when used with Office 365 Legacy Exchange Tokens. This allows a remote attacker to read potentially sensitive data and excessively consume resources, leading to a denial of service.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| pexip | pexip_infinity | 15 ≤ 𝑥 < 38.1 |
𝑥
= Vulnerable software versions