CVE-2025-27364

CRITICAL

MITRE Caldera <5.0.0 before 35bc06e - RCE

Title source: llm
STIX 2.1

Description

In MITRE Caldera through 4.2.0 and 5.0.0 before 35bc06e, a Remote Code Execution (RCE) vulnerability was found in the dynamic agent (implant) compilation functionality of the server. This allows remote attackers to execute arbitrary code on the server that Caldera is running on via a crafted web request to the Caldera server API used for compiling and downloading of Caldera's Sandcat or Manx agent (implants). This web request can use the gcc -extldflags linker flag with sub-commands.

Scores

CVSS v3 10.0
EPSS 0.2381
EPSS Percentile 97.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact total

Details

CWE
CWE-78
Status published
Products (2)
MITRE/Caldera < 4.2.0
MITRE/Caldera 5.0.0
Published Feb 24, 2025
Tracked Since Feb 18, 2026