STRIKE June 10, 2025 Reading Time: 1 minutes

Erlang Erlang/OTP SSH Server Missing Authentication for Critical Function Vulnerability (CVE-2025-32433) Added to CISA KEV

by STRIKE Threat Intelligence by SecurityScorecard

SecurityScorecard June 10 Advisory

CVE-2025-32433 is a critical vulnerability affecting Erlang OTP with a CVSS score of 10.0.

On June 09, 2025, this vulnerability was added to CISA’s list of Known Exploited Vulnerabilities (CISA-KEV).

  • Severity: Critical
  • Impact: Severe impact, high likelihood of exploitation
  • Action: Immediate action required – apply patches, restrict access, implement emergency security measures.

At the time of this writing, SecurityScorecard’s Attack Surface Intelligence has found 16335 IPs that are  vulnerable to this CVE.

More details available at:

CISA Known Exploited Vulnerabilities Catalog: CISA KEV

Get Intel That Tells You What to Do Next

Connect with STRIKE