TECHNICAL ANALYSISCVE-2025-32433

CVE-2025-32433 — Erlang/OTP SSH Unauthenticated Remote Code Execution

Erlang/OTP is a set of libraries for the Erlang programming language. Prior to versions OTP-27.3.3, OTP-26.2.5.11, and OTP-25.3.2.20, a SSH server may allow an attacker to perform unauthenticated remote code execution (RCE).

Originally published on Rapid7 AttackerKB · 2025-04-18 · revised 2025-04-19