← back
CVE-2025-3497highCWE-1104

Radiflow iSAP Smart Collector Linux distribution unmaintained

21Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 8.7epss 0.3%
exploitation probability
0.3%top 74% of all CVEs
observed exploitation
nono source reports it
In short

The Radiflow iSAP Smart Collector runs on CentOS 7, an obsolete Linux version that stopped receiving security updates in June 2024. This means new security vulnerabilities in the operating system won't be patched, leaving the device exposed to attacks.

Technical detail

The underlying CentOS 7 distribution reached end-of-life on June 30, 2024, eliminating vendor security patches. Attackers can exploit unmitigated OS-level vulnerabilities through network or local access vectors to compromise the Smart Collector, potentially affecting industrial control operations depending on its deployment context.

Summary generated and translated by AI from the official description.
The Linux distribution underlying the Radiflow iSAP Smart Collector (CentOS 7 - VSAP 1.20) is obsolete and reached end of life (EOL) on June 30, 2024. Thus, any unmitigated vulnerability could be exploited to affect this product.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:N/I:H/A:H