CVE-2025-37162
- EPSS 0.89%
- Veröffentlicht 18.11.2025 19:23:20
- Zuletzt bearbeitet 13.02.2026 16:22:59
A vulnerability in the command line interface of affected devices could allow an authenticated remote attacker to conduct a command injection attack. Successful exploitation could allow an attacker to execute arbitrary commands on the underlying oper...
CVE-2025-37161
- EPSS 0.39%
- Veröffentlicht 18.11.2025 19:21:23
- Zuletzt bearbeitet 13.02.2026 16:31:47
A vulnerability in the web-based management interface of affected products could allow an unauthenticated remote attacker to cause a denial of service. Successful exploitation could allow an attacker to crash the system, preventing it from rebooting...
CVE-2025-37145
- EPSS 0.42%
- Veröffentlicht 14.10.2025 17:02:25
- Zuletzt bearbeitet 12.11.2025 17:37:53
Arbitrary file download vulnerabilities exist in a low-level interface library in AOS-10 GW and AOS-8 Controller/Mobility Conductor operating systems. Successful exploitation could allow an authenticated malicious actor to download arbitrary files th...
CVE-2025-37144
- EPSS 0.42%
- Veröffentlicht 14.10.2025 17:01:45
- Zuletzt bearbeitet 12.11.2025 17:38:15
Arbitrary file download vulnerabilities exist in a low-level interface library in AOS-10 GW and AOS-8 Controller/Mobility Conductor operating systems. Successful exploitation could allow an authenticated malicious actor to download arbitrary files th...
CVE-2025-37143
- EPSS 0.36%
- Veröffentlicht 14.10.2025 17:00:24
- Zuletzt bearbeitet 12.11.2025 17:44:20
An arbitrary file download vulnerability exists in the web-based management interface of AOS-10 GW and AOS-8 Controller/Mobility Conductor operating systems. Successful exploitation could allow an Authenticated malicious actor to download arbitrary f...
CVE-2025-37142
- EPSS 0.33%
- Veröffentlicht 14.10.2025 16:59:42
- Zuletzt bearbeitet 12.11.2025 20:55:00
Arbitrary file download vulnerabilities exist in the CLI binary of AOS-10 GW and AOS-8 Controller/Mobility Conductor operating systems. Successful exploitation could allow an authenticated malicious actor to download arbitrary files through carefully...
CVE-2025-37141
- EPSS 0.33%
- Veröffentlicht 14.10.2025 16:59:14
- Zuletzt bearbeitet 12.11.2025 20:55:31
Arbitrary file download vulnerabilities exist in the CLI binary of AOS-10 GW and AOS-8 Controller/Mobility Conductor operating systems. Successful exploitation could allow an authenticated malicious actor to download arbitrary files through carefully...
CVE-2025-37140
- EPSS 0.33%
- Veröffentlicht 14.10.2025 16:58:41
- Zuletzt bearbeitet 12.11.2025 21:02:06
Arbitrary file download vulnerabilities exist in the CLI binary of AOS-10 GW and AOS-8 Controller/Mobility Conductor operating systems. Successful exploitation could allow an authenticated malicious actor to download arbitrary files through carefully...
CVE-2025-37138
- EPSS 0.68%
- Veröffentlicht 14.10.2025 16:57:50
- Zuletzt bearbeitet 30.09.2026 23:10:00
An authenticated command injection vulnerability exists in the command line interface binary of AOS-10 GW and AOS-8 Controllers/Mobility Conductor operating system. Exploitation of this vulnerability requires physical access to the hardware controlle...
CVE-2025-37137
- EPSS 0.34%
- Veröffentlicht 14.10.2025 16:57:32
- Zuletzt bearbeitet 12.11.2025 21:06:42
Arbitrary file deletion vulnerabilities have been identified in the command-line interface of an AOS-8 Controller/Mobility Conductor. Successful exploitation of these vulnerabilities could allow an authenticated remote malicious actor to delete arbit...