CVE-2025-37177
- EPSS 0.32%
- Veröffentlicht 13.01.2026 20:08:06
- Zuletzt bearbeitet 23.01.2026 16:10:10
An arbitrary file deletion vulnerability has been identified in the command-line interface of mobility conductors running either AOS-10 or AOS-8 operating systems. Successful exploitation of this vulnerability could allow an authenticated remote mali...
CVE-2025-37176
- EPSS 1.29%
- Veröffentlicht 13.01.2026 20:07:50
- Zuletzt bearbeitet 23.01.2026 16:12:02
A command injection vulnerability in AOS-8 allows an authenticated privileged user to alter a package header to inject shell commands, potentially affecting the execution of internal operations. Successful exploit could allow an authenticated malicio...
CVE-2025-37175
- EPSS 0.45%
- Veröffentlicht 13.01.2026 20:07:34
- Zuletzt bearbeitet 23.01.2026 16:37:56
Arbitrary file upload vulnerability exists in the web-based management interface of mobility conductors running either AOS-10 or AOS-8 operating systems. Successful exploitation could allow an authenticated malicious actor to upload arbitrary files a...
CVE-2025-37174
- EPSS 0.49%
- Veröffentlicht 13.01.2026 20:05:33
- Zuletzt bearbeitet 23.01.2026 16:38:12
Authenticated arbitrary file write vulnerability exists in the web-based management interface of mobility conductors running either AOS-10 or AOS-8 operating systems. Successful exploitation could allow an authenticated malicious actor to create or m...
CVE-2025-37173
- EPSS 0.38%
- Veröffentlicht 13.01.2026 20:04:57
- Zuletzt bearbeitet 23.01.2026 16:44:30
An improper input handling vulnerability exists in the web-based management interface of mobility conductors running either AOS-10 or AOS-8 operating systems. Successful exploitation could allow an authenticated malicious actor with valid credentials...
CVE-2025-37172
- EPSS 1.14%
- Veröffentlicht 13.01.2026 20:04:38
- Zuletzt bearbeitet 23.01.2026 16:45:03
Authenticated command injection vulnerabilities exist in the web-based management interface of mobility conductors running AOS-8 operating system. Successful exploitation could allow an authenticated malicious actor to execute arbitrary commands as a...
CVE-2025-37171
- EPSS 1.25%
- Veröffentlicht 13.01.2026 20:04:22
- Zuletzt bearbeitet 23.01.2026 16:45:38
Authenticated command injection vulnerabilities exist in the web-based management interface of mobility conductors running AOS-8 operating system. Successful exploitation could allow an authenticated malicious actor to execute arbitrary commands as a...
CVE-2025-37170
- EPSS 1.17%
- Veröffentlicht 13.01.2026 20:04:03
- Zuletzt bearbeitet 23.01.2026 16:46:09
Authenticated command injection vulnerabilities exist in the web-based management interface of mobility conductors running AOS-8 operating system. Successful exploitation could allow an authenticated malicious actor to execute arbitrary commands as a...
CVE-2025-37169
- EPSS 0.5%
- Veröffentlicht 13.01.2026 20:03:33
- Zuletzt bearbeitet 25.02.2026 19:43:16
A stack overflow vulnerability exists in the AOS-10 web-based management interface of a Mobility Gateway. Successful exploitation could allow an authenticated malicious actor to execute arbitrary code as a privileged user on the underlying operating ...
CVE-2025-37168
- EPSS 0.4%
- Veröffentlicht 13.01.2026 20:03:08
- Zuletzt bearbeitet 23.01.2026 14:53:05
Arbitrary file deletion vulnerability have been identified in a system function of mobility conductors running AOS-8 operating system. Successful exploitation of this vulnerability could allow an unauthenticated remote malicious actor to delete arbit...