STRIKE

Erlang Erlang/OTP SSH Server Missing Authentication for Critical Function Vulnerability (CVE-2025-32433) Added to CISA KEV

Erlang Erlang/OTP SSH Server Missing Authentication for Critical Function Vulnerability (CVE-2025-32433) Added to CISA KEV
Erlang Erlang/OTP SSH Server Missing Authentication for Critical Function Vulnerability (CVE-2025-32433)

SecurityScorecard June 10 Advisory

CVE-2025-32433 is a critical vulnerability affecting Erlang OTP with a CVSS score of 10.0.

On June 09, 2025, this vulnerability was added to CISA’s list of Known Exploited Vulnerabilities (CISA-KEV).

  • Severity: Critical
  • Impact: Severe impact, high likelihood of exploitation
  • Action: Immediate action required – apply patches, restrict access, implement emergency security measures.

At the time of this writing, SecurityScorecard’s Attack Surface Intelligence has found 16335 IPs that are  vulnerable to this CVE.

More details available at:

CISA Known Exploited Vulnerabilities Catalog: CISA KEV