CVE-2025-64123

Unintended Proxy or Intermediary vulnerability in Nuvation Energy Multi-Stack Controller (MSC) allows Network Boundary Bridging.This issue affects Multi-Stack Controller (MSC): through and including release 2.5.1.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:nuvationenergy:nplatform:*:*:*:*:*:*:*:*
OR cpe:2.3:h:nuvationenergy:nuvmsc3-04s-c:-:*:*:*:*:*:*:*
cpe:2.3:h:nuvationenergy:nuvmsc3-08s-c:-:*:*:*:*:*:*:*
cpe:2.3:h:nuvationenergy:nuvmsc3-12s-c:-:*:*:*:*:*:*:*
cpe:2.3:h:nuvationenergy:nuvmsc3-16s-c:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-01-02 22:15

Updated : 2026-02-26 19:59


NVD link : CVE-2025-64123

Mitre link : CVE-2025-64123

CVE.ORG link : CVE-2025-64123


JSON object : View

Products Affected

nuvationenergy

  • nplatform
  • nuvmsc3-04s-c
  • nuvmsc3-12s-c
  • nuvmsc3-16s-c
  • nuvmsc3-08s-c
CWE
CWE-441

Unintended Proxy or Intermediary ('Confused Deputy')