A vulnerability has been found in Radarr 5.28.0.10274. The affected element is an unknown function of the file C:\ProgramData\Radarr\bin\Radarr.Console.exe of the component Service. Such manipulation leads to incorrect default permissions. The attack can only be performed from a local environment. The vendor was contacted early about this disclosure but did not respond in any way.
Metrics
Affected Vendors & Products
References
History
Fri, 14 Nov 2025 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Radarr
Radarr radarr |
|
| Vendors & Products |
Radarr
Radarr radarr |
Thu, 13 Nov 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in Radarr 5.28.0.10274. The affected element is an unknown function of the file C:\ProgramData\Radarr\bin\Radarr.Console.exe of the component Service. Such manipulation leads to incorrect default permissions. The attack can only be performed from a local environment. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | Radarr Service Radarr.Console.exe default permission | |
| Weaknesses | CWE-266 CWE-276 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-11-13T22:02:05.548Z
Updated: 2025-11-14T15:24:32.425Z
Reserved: 2025-11-13T15:28:26.949Z
Link: CVE-2025-13130
No data.
Status : Received
Published: 2025-11-13T22:15:50.007
Modified: 2025-11-13T22:15:50.007
Link: CVE-2025-13130
No data.