CVE-2025-2402
A hard-coded, non-random password for the object store (minio) of KNIME Business Hub in all versions except the ones listed below allows an unauthenticated remote attacker in possession of the password to read and manipulate swapped jobs or read and manipulate in- and output data of active jobs. It is also possible to cause a denial-of-service of most functionality of KNIME Business Hub by writing large amounts of data to the object store directly.
There are no viable workarounds therefore we strongly recommend to update to one of the following versions of KNIME Business Hub:
Detalles técnicos trazas, registros y código del informe original
* 1.13.2 or later * 1.12.3 or later * 1.11.3 or later * 1.10.3 or later
CVSS
- Versión: 4.0
- Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:H/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:U/V:C/RE:M/U:Amber
- Puntuación base: 8.8
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.39%
- Percentil entre todas las CVEs puntuadas: 30
- Fecha de la puntuación: 6/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
🎯 Técnicas ATT&CK
Cómo se explota esta vulnerabilidad y qué consigue el atacante, en el lenguaje de MITRE ATT&CK.
- Explotación
T1190Exploit Public-Facing Applicationinitial access85 % - Impacto principal
T1005Data from Local Systemcollection90 % - Impacto secundario
T1499Endpoint Denial of Serviceimpact80 % - Impacto secundario
T1565Data Manipulationimpact85 %
Acceso remoto sin autenticación (AV:N/PR:N/UI:N) a servicio expuesto (MinIO). Permite lectura de datos (T1005), manipulación de trabajos/datos (T1565) y denegación de servicio (T1499) mediante escritura masiva.
Inferido por nuestro agente de análisis a partir de la descripción oficial, el vector CVSS y la CWE, y comprobado por un supervisor. Puede contener errores.
🛡️ Mitigaciones ATT&CK que cubren estas técnicas
Tecnologías afectadas (1)
CWE
- CWE-259
Referencias
JSON original (NVD)
Mostrar
{
"id": "CVE-2025-2402",
"cveTags": [],
"metrics": {
"ssvcV203": [
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"ssvcData": {
"id": "CVE-2025-2402",
"role": "CISA Coordinator",
"options": [
{
"exploitation": "none"
},
{
"automatable": "yes"
},
{
"technicalImpact": "partial"
}
],
"version": "2.0.3",
"timestamp": "2025-03-31T12:50:01.777131Z"
}
}
],
"cvssMetricV31": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 8.6,
"attackVector": "NETWORK",
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H",
"integrityImpact": "LOW",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "HIGH",
"privilegesRequired": "NONE",
"confidentialityImpact": "LOW"
},
"impactScore": 4.7,
"exploitabilityScore": 3.9
}
],
"cvssMetricV40": [
{
"type": "Secondary",
"source": "security@knime.com",
"cvssData": {
"Safety": "NOT_DEFINED",
"version": "4.0",
"Recovery": "USER",
"baseScore": 8.8,
"Automatable": "YES",
"attackVector": "NETWORK",
"baseSeverity": "HIGH",
"valueDensity": "CONCENTRATED",
"vectorString": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:H/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:U/V:C/RE:M/U:Amber",
"exploitMaturity": "NOT_DEFINED",
"providerUrgency": "AMBER",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"attackRequirements": "NONE",
"privilegesRequired": "NONE",
"subIntegrityImpact": "LOW",
"vulnIntegrityImpact": "LOW",
"integrityRequirement": "NOT_DEFINED",
"modifiedAttackVector": "NOT_DEFINED",
"subAvailabilityImpact": "NONE",
"vulnAvailabilityImpact": "HIGH",
"availabilityRequirement": "NOT_DEFINED",
"modifiedUserInteraction": "NOT_DEFINED",
"modifiedAttackComplexity": "NOT_DEFINED",
"subConfidentialityImpact": "LOW",
"vulnConfidentialityImpact": "LOW",
"confidentialityRequirement": "NOT_DEFINED",
"modifiedAttackRequirements": "NOT_DEFINED",
"modifiedPrivilegesRequired": "NOT_DEFINED",
"modifiedSubIntegrityImpact": "NOT_DEFINED",
"modifiedVulnIntegrityImpact": "NOT_DEFINED",
"vulnerabilityResponseEffort": "MODERATE",
"modifiedSubAvailabilityImpact": "NOT_DEFINED",
"modifiedVulnAvailabilityImpact": "NOT_DEFINED",
"modifiedSubConfidentialityImpact": "NOT_DEFINED",
"modifiedVulnConfidentialityImpact": "NOT_DEFINED"
}
}
]
},
"affected": [
{
"source": "security@knime.com",
"affectedData": [
{
"vendor": "KNIME",
"modules": [
"object store"
],
"product": "KNIME Business Hub",
"versions": [
{
"status": "affected",
"version": "1.13.0",
"lessThan": "1.13.2",
"versionType": "semver"
},
{
"status": "affected",
"version": "1.12.0",
"lessThan": "1.12.3",
"versionType": "semver"
},
{
"status": "affected",
"version": "1.11.0",
"lessThan": "1.11.3",
"versionType": "semver"
},
{
"status": "affected",
"version": "0",
"lessThan": "1.10.3",
"versionType": "semver"
}
],
"defaultStatus": "unaffected"
}
]
}
],
"published": "2025-03-31T07:15:18.280",
"references": [
{
"url": "https://www.knime.com/security/advisories#CVE-2025-2402",
"tags": [
"Vendor Advisory"
],
"source": "security@knime.com"
},
{
"url": "https://github.com/advisories/GHSA-v5p7-3387-gpmg",
"tags": [
"Third Party Advisory"
],
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0"
}
],
"vulnStatus": "Analyzed",
"weaknesses": [
{
"type": "Secondary",
"source": "security@knime.com",
"description": [
{
"lang": "en",
"value": "CWE-259"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "A hard-coded, non-random password for the object store (minio) of KNIME Business Hub in all versions except the ones listed below allows an unauthenticated remote attacker in possession of the password to read and manipulate swapped jobs or read and manipulate in- and output data of active jobs. It is also possible to cause a denial-of-service of most functionality of KNIME Business Hub by writing large amounts of data to the object store directly. \n\n\n\nThere are no viable workarounds therefore we strongly recommend to update to one of the following versions of KNIME Business Hub: \n\n\n\n * 1.13.2 or later \n\n\n\n\n\n\n * 1.12.3 or later \n\n\n\n\n\n\n * 1.11.3 or later \n\n\n\n\n\n\n * 1.10.3 or later"
},
{
"lang": "es",
"value": "Una contraseña no aleatoria y fijada en el código para el almacén de objetos (minio) de KNIME Business Hub, en todas las versiones excepto las que se indican a continuación, permite que un atacante remoto no autenticado que la posea lea y manipule trabajos intercambiados o lea y manipule datos de entrada y salida de trabajos activos. También es posible provocar una denegación de servicio en la mayoría de las funciones de KNIME Business Hub al escribir grandes cantidades de datos directamente en el almacén de objetos. No existen workarounds viables, por lo que recomendamos encarecidamente actualizar a una de las siguientes versiones de KNIME Business Hub: * 1.13.2 o posterior * 1.12.3 o posterior * 1.11.3 o posterior * 1.10.3 o posterior"
}
],
"lastModified": "2026-06-17T09:06:57.637",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:knime:business_hub:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "81D9C268-C37C-4D91-A5B5-1E98DCA04B79",
"versionEndExcluding": "1.10.3"
},
{
"criteria": "cpe:2.3:a:knime:business_hub:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "7A6E2E3C-C4A6-4AEB-B9EE-7DC506CA81DC",
"versionEndExcluding": "1.11.3",
"versionStartIncluding": "1.11.0"
},
{
"criteria": "cpe:2.3:a:knime:business_hub:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "CC9369E4-3314-4D76-B7FF-F53A098A7669",
"versionEndExcluding": "1.12.3",
"versionStartIncluding": "1.12.0"
},
{
"criteria": "cpe:2.3:a:knime:business_hub:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "190F38D7-CE39-42A9-848B-910E39C627A6",
"versionEndExcluding": "1.13.2",
"versionStartIncluding": "1.13.0"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "security@knime.com"
}