CVE-2025-34395
HIGHBarracuda RMM < 2025.1.1 - Unauthenticated Path Traversal via .NET Remoting Service
Title source: llmDescription
Barracuda Service Center, as implemented in the RMM solution, in versions prior to 2025.1.1, exposes a .NET Remoting service in which an unauthenticated attacker can invoke a method vulnerable to path traversal to read arbitrary files. This vulnerability can be escalated to remote code execution by retrieving the .NET machine keys.
References (3)
Core 3
Core References
Release Notes vendor-advisory
patch
https://download.mw-rmm.barracudamsp.com/PDF/2025.1.1/RN_BRMM_2025.1.1_EN.pdf
Product product
https://www.barracuda.com/products/msp/network-protection/rmm
Third Party Advisory third-party-advisory
https://www.vulncheck.com/advisories/barracuda-rmm-service-center-net-remoting-path-traversal-rce
Scores
CVSS v3
7.5
EPSS
0.0063
EPSS Percentile
45.6%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
yes
Technical Impact
partial
Details
CWE
CWE-22
Status
published
Products (2)
barracuda/rmm
< 2025.1.1
Barracuda Networks/RMM
2025.1 - 2025.1.1
Published
Dec 10, 2025
Tracked Since
Feb 18, 2026