CVE-2025-3497: Radiflow iSAP Smart Collector Linux distribution unmaintained
The Linux distribution underlying the Radiflow iSAP Smart Collector (CentOS 7 - VSAP 1.20) is obsolete and reached end of life (EOL) on June 30, 2024. Thus, any unmitigated vulnerability could be exploited to affect this product.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-3497?
CVE-2025-3497 has a critical severity due to the potential for exploitation stemming from the use of an obsolete Linux distribution.
How do I fix CVE-2025-3497?
You can mitigate CVE-2025-3497 by upgrading to a supported version of Linux and ensuring your systems are running an updated version of the Radiflow iSAP Smart Collector.
What are the risks associated with CVE-2025-3497?
The risks include potential exploitation of unpatched vulnerabilities in the obsolete CentOS 7 environment, leading to unauthorized access or data breaches.
Which systems are affected by CVE-2025-3497?
CVE-2025-3497 affects the Radiflow iSAP Smart Collector operating on CentOS 7, specifically the version VSAP 1.20.
Is there a workaround for CVE-2025-3497?
There is no reliable workaround for CVE-2025-3497, so upgrading to a supported environment is essential.