Description

Sliver is a command and control framework that uses a custom Wireguard netstack. In versions 1.5.43 and earlier, and in development version 1.6.0-dev, the netstack does not limit traffic between Wireguard clients. This allows clients to communicate with each other unrestrictedly, potentially enabling leaked or recovered keypairs to be used to attack operators or allowing port forwardings to be accessible from other implants.

INFO

Published Date :

2025-10-28T19:29:16.147Z

Last Modified :

2025-10-29T17:43:54.102Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2025-27093 vulnerability.

Vendors Products
Bishopfox
  • Sliver

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact