Vulnerability Details CVE-2025-62001
BullWall Ransomware Containment supports configurable file and directory exclusions such as '$RECYCLE.BIN' to balance monitoring scope and performance. Certain exclusion patterns could allow an authenticated attacker to rename directories in a way that avoids monitoring. Fixed in 4.6.1.14 and 5.0.0.42, which remove hardcoded exclusion behavior and exposes exclusion handling as configurable settings.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 5.4%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2025-62001
-
cpe:2.3:a:bullwall:ransomware_containment:4.6.0.0
-
cpe:2.3:a:bullwall:ransomware_containment:4.6.0.6
-
cpe:2.3:a:bullwall:ransomware_containment:4.6.0.7
-
cpe:2.3:a:bullwall:ransomware_containment:4.6.1.4