Intelligence View
CVE-2025-4295 | HotelRunner B2B up to 03.06.2025 Host certificate host validation
A vulnerability described as critical has been identified in HotelRunner B2B up to 03.06.2025. This impacts an unknown function. The manipulation of the argument Host results in certificate with host mismatch. This vulnerability was named…
This vulnerability was named CVE-2025-4295. The attack may be performed from remote. There is no available exploit.
This product is a managed service. It is not possible for users to maintain vulnerability countermeasures themselves.
SOC Incident Playbook: Vulnerability Remediation & Verification
title: Detect Exploitation - CVE-2025-4295 | HotelRunner B2B up to 03.06.2025 Host certificate host validation
id: 81a8b942-3aad-4378-bcd5-a47d3f60ee2e
status: experimental
description: Automatisch generierte SIEM-Erkennungsregel basierend auf CTI Intelligence
references:
- https://tsecurity.de/
author: iShareStuff CTI Automated Detection Engine
date: 2026-09-23
logsource:
category: network_connection
product: any
detection:
selection:
CommandLine|contains:
- 'exploit'
condition: selection
falsepositives:
- Legitime administrative Zugriffe oder Penetrationstests
level: high
tags:
- attack.initial_accessrule CTI_Threat_Indicator {
meta:
author = "iShareStuff CTI Automated Detection Engine"
date = "2026-09-23"
description = "YARA Signature for "
strings:
$str = "CVE-2025-4295 | HotelRunner B2" ascii wide
condition:
any of them
}
SOCIAL SHARE CARD GENERATOR