---
id: CVE-2025-14213
title: >-
  Cato Networks’ Socket versions prior to 25 contain a command injection
  vulnerability that allows an authenticated attacker with access to the Socket
  web interface (UI) to execute arbitrary operating system commands as the root
  user on th…
summary: >-
  Cato Networks’ Socket versions prior to 25 contain a command injection
  vulnerability that allows an authenticated attacker with access to the Socket
  web interface (UI) to execute arbitrary operating system commands as the root
  user on th…
severity: none
cwe:
  - CWE-20
  - CWE-78
published: '2026-03-31'
updated: '2026-07-25'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-14213'
references:
  - url: >-
      https://support.catonetworks.com/hc/en-us/articles/33184937283357-CVE-2025-14213-Socket-WebUI-OS-Command-Injection
    label: 2505284f-8ffb-486c-bf60-e19c1097a90b
tags:
  - nvd
epss: 0.00976
epssPercentile: 0.60654
ingestedAt: '2026-07-25T10:53:53.067Z'
---

## Overview

Cato Networks’ Socket versions prior to 25 contain a command injection vulnerability that allows an authenticated attacker with access to the Socket web interface (UI) to execute arbitrary operating system commands as the root user on the Socket’s internal system.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
