Description

An uncontrolled search path element vulnerability can lead to local privilege Escalation (LPE) via Insecure Directory Permissions. The vulnerability arises from improper handling of directory permissions. An attacker with local access may exploit this flaw to move and delete arbitrary files, potentially gaining SYSTEM privileges.

INFO

Published Date :

2025-07-30T00:15:43.132Z

Last Modified :

2025-07-30T14:03:41.113Z

Source :

elastic
AFFECTED PRODUCTS

The following products are affected by CVE-2025-25011 vulnerability.

Vendors Products
Elastic
  • Elastic Beats
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2025-25011.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact