🟡 CVE-2025-6264

CVE-2025-6264 is a privilege escalation vulnerability in Rapid7 Velociraptor that allows users with COLLECT_CLIENT permissions to execute arbitrary commands and take over endpoints. The vulnerability has been actively exploited in ransomware attacks and affects internet-facing Velociraptor server deployments.

← Back to Overview
MEDIUM_RISK
Risk Level
T1190
MITRE Technique
5.5
CVSS Score
NETWORK
Attack Vector
MEDIUM
Deployment Risk

📋 Vulnerability Details

Data Source: CIRCL

Confidence: HIGH

Exploitation Method: DIRECT_NETWORK

🎯 Recommendations:

🔍 Web Intelligence

Key Sources: