Vulnerability threat dossier

CVE-2025-25231

Vendor unknownProduct mapping pending

Metadata pending authoritative retrieval.

VTP deterministic threat40.5of 100 · CVSS excluded

VTP analyst assessment

AI analysis pending for this subject

AI-assisted analytical recommendationDoes not set factual exploitation state
AI review statePENDING
AI priorityNONE
AI confidenceUnknown
Public exploitation · VTP factCONFIRMED

Assessment

No successful baseline AI assessment is persisted for this CVE. No AI conclusion is available.

Why it matters

Unknown until a baseline public-CTI review completes.

Evidence

No validated baseline evidence scope is persisted for this CVE.

Uncertainties

First-party sensor telemetry is active; no disclosure-eligible deterministic observation is currently public for this CVE. This does not mean no activity was observed.

Next watchpoint

A validated functional exploit or automated exploitation capability would materially change this assessment.

AI baseline history (0)
    Technical severityUNKNOWNCVSS unknown · technical context
    Public exploitationCONFIRMEDGlobal public evidence
    Exploit maturityTECHNICAL DETAILSReliability not implied
    EPSS0.2298th percentile · prediction
    Evidence confidence95%Strongest independent active claim
    VelocitySTABLEMaterial events only
    First-party telemetryFirst-party sensor telemetry is active; no disclosure-eligible deterministic observation is currently public for this CVE. This does not mean no activity was observed.
    Availability: SENSOR_ONLINE_NO_MATCHING_ACTIVITY · Evidence: UNKNOWN
    01

    VTP deterministic assessment

    Why this matters

    1. 01

      A primary source reports active exploitation.

    2. 02

      EPSS is 0.22; this is predictive context, not exploitation evidence.

    3. 03

      First-party sensor telemetry is active; no disclosure-eligible deterministic observation is currently public for this CVE. This does not mean no activity was observed.

    02

    Material change ledger

    What changed

    No material changes are recorded for this subject.

    03

    Claim provenance

    Evidence and source independence

    1publications detected
    1underlying evidence chains

    1 primary sources · 0 dependent secondary reports · 0 reports with unresolved independence. Repetition remains visible without multiplying confirmation.

    Source claimACTIVE EXPLOITATIONENISA EU KEV LISTED
    95%claim confidence
    INDEPENDENTcatalog:enisa-eu-kev:CVE-2025-25231ACTIVE
    Evidence
    04

    Event history

    Threat timeline

    1. 00:0009 Sept
      ACTIVE EXPLOITATION

      ENISA EU KEV entry added

      ENISA EU KEV reports known exploitation. VTP imported this historical entry as source baseline. This is public intelligence, not a VTP sensor observation.

    05

    Original publications

    Source record

    ENISA EU KEV catalog membership for CVE-2025-25231

    ENISA EU KEV lists this vulnerability as known to be exploited. This is public intelligence, not a VTP sensor observation.

    CVE-2025-25231
    Separate evidence group
    Original
    06

    Technical vulnerability data

    Context, not threat proof

    VTP threat score40.5vtp-threat-v1-public
    Public exploitation24 / 30
    EPSS prediction4.46 / 20
    Exploit availability2.5 / 15
    Source independence7.5 / 15
    Intelligence recency2 / 10
    Threat acceleration0 / 10
    CVSS technical severityExcluded
    CVSS
    Unknown · UNKNOWN
    Vector
    Unknown
    CWE
    Unknown
    CPE records
    0
    Deterministic history records
    19
    07

    Raw observations

    First-party sensor records

    First-party sensor telemetry is active; no disclosure-eligible deterministic observation is currently public for this CVE. This does not mean no activity was observed.