CVE-2025-63909
7.2Cohesity · TranZman Migration Appliance
Incorrect access control in the TapeDumper component of Cohesity TranZman Migration Appliance 4.0 allows authenticated attackers to escalate privileges to root and manipulate arbitrary files.
Executive summary
A high-severity access control vulnerability in Cohesity TranZman Migration Appliance 4.0 enables authenticated attackers to escalate privileges to root and perform unauthorized file operations.
Vulnerability
This vulnerability involves incorrect access control within the /opt/SRLtzm/bin/TapeDumper component. It requires an attacker to have high privileges to trigger the flaw, which subsequently allows for root-level privilege escalation and unauthorized file read or write access.
Business impact
The potential for root-level privilege escalation poses a severe threat to the confidentiality, integrity, and availability of the migration appliance. Successful exploitation could lead to full system compromise, allowing an attacker to exfiltrate sensitive migration data or modify system configurations, which justifies its high CVSS score of 7.2.
Remediation
Immediate Action: Contact Cohesity support to obtain the latest security updates or patches for TranZman Migration Appliance Release 4.0.
Proactive Monitoring: Review system access logs for unauthorized execution of the TapeDumper utility or unexpected modifications to sensitive system files.
Compensating Controls: Restrict administrative access to the appliance to a minimal number of trusted personnel and ensure the management interface is not exposed to untrusted networks.
Exploitation status
Public Exploit Available: Yes, a published proof-of-concept exists as detailed in the researcher write-up on GitHub.
Analyst recommendation
Given the ability for an attacker to achieve root-level access, this vulnerability requires immediate attention. Administrators must prioritize applying vendor-supplied patches and auditing the environment for any signs of unauthorized access to the affected appliance.