CVE Vulnerabilities

CVE-2025-7044

Improper Privilege Management

Published: Dec 03, 2025 | Modified: Dec 18, 2025
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

An Improper Input Validation vulnerability exists in the user websocket handler of MAAS. An authenticated, unprivileged attacker can intercept a user.update websocket request and inject the is_superuser property set to true. The server improperly validates this input, allowing the attacker to self-promote to an administrator role. This results in full administrative control over the MAAS deployment.

Weakness

The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

Affected Software

NameVendorStart VersionEnd Version
MaasCanonical3.3.0 (including)3.3.11 (excluding)
MaasCanonical3.4.0 (including)3.4.9 (excluding)
MaasCanonical3.5.0 (including)3.5.9 (excluding)
MaasCanonical3.6.0 (including)3.6.2 (excluding)

Potential Mitigations

References