CVE-2025-37169
- EPSS 0.08%
- Veröffentlicht 13.01.2026 20:03:33
- Zuletzt bearbeitet 23.01.2026 16:46:48
A stack overflow vulnerability exists in the AOS-10 web-based management interface of a Mobility Gateway. Successful exploitation could allow an authenticated malicious actor to execute arbitrary code as a privileged user on the underlying operating ...
CVE-2025-37168
- EPSS 0.07%
- Veröffentlicht 13.01.2026 20:03:08
- Zuletzt bearbeitet 23.01.2026 14:53:05
Arbitrary file deletion vulnerability have been identified in a system function of mobility conductors running AOS-8 operating system. Successful exploitation of this vulnerability could allow an unauthenticated remote malicious actor to delete arbit...
CVE-2025-37145
- EPSS 0.06%
- Veröffentlicht 14.10.2025 17:02:25
- Zuletzt bearbeitet 12.11.2025 17:37:53
Arbitrary file download vulnerabilities exist in a low-level interface library in AOS-10 GW and AOS-8 Controller/Mobility Conductor operating systems. Successful exploitation could allow an authenticated malicious actor to download arbitrary files th...
CVE-2025-37144
- EPSS 0.06%
- Veröffentlicht 14.10.2025 17:01:45
- Zuletzt bearbeitet 12.11.2025 17:38:15
Arbitrary file download vulnerabilities exist in a low-level interface library in AOS-10 GW and AOS-8 Controller/Mobility Conductor operating systems. Successful exploitation could allow an authenticated malicious actor to download arbitrary files th...
CVE-2025-37143
- EPSS 0.04%
- Veröffentlicht 14.10.2025 17:00:24
- Zuletzt bearbeitet 12.11.2025 17:44:20
An arbitrary file download vulnerability exists in the web-based management interface of AOS-10 GW and AOS-8 Controller/Mobility Conductor operating systems. Successful exploitation could allow an Authenticated malicious actor to download arbitrary f...
CVE-2025-37142
- EPSS 0.04%
- Veröffentlicht 14.10.2025 16:59:42
- Zuletzt bearbeitet 12.11.2025 20:55:00
Arbitrary file download vulnerabilities exist in the CLI binary of AOS-10 GW and AOS-8 Controller/Mobility Conductor operating systems. Successful exploitation could allow an authenticated malicious actor to download arbitrary files through carefully...
CVE-2025-37141
- EPSS 0.04%
- Veröffentlicht 14.10.2025 16:59:14
- Zuletzt bearbeitet 12.11.2025 20:55:31
Arbitrary file download vulnerabilities exist in the CLI binary of AOS-10 GW and AOS-8 Controller/Mobility Conductor operating systems. Successful exploitation could allow an authenticated malicious actor to download arbitrary files through carefully...
CVE-2025-37140
- EPSS 0.04%
- Veröffentlicht 14.10.2025 16:58:41
- Zuletzt bearbeitet 12.11.2025 21:02:06
Arbitrary file download vulnerabilities exist in the CLI binary of AOS-10 GW and AOS-8 Controller/Mobility Conductor operating systems. Successful exploitation could allow an authenticated malicious actor to download arbitrary files through carefully...
- EPSS 0.02%
- Veröffentlicht 14.10.2025 16:58:14
- Zuletzt bearbeitet 14.10.2025 20:15:35
A vulnerability in an AOS firmware binary allows an authenticated malicious actor to permanently delete necessary boot information. Successful exploitation may render the system unbootable, resulting in a Denial of Service that can only be resolved b...
CVE-2025-37138
- EPSS 0.04%
- Veröffentlicht 14.10.2025 16:57:50
- Zuletzt bearbeitet 12.11.2025 21:05:32
An authenticated command injection vulnerability exists in the command line interface binary of AOS-10 GW and AOS-8 Controllers/Mobility Conductor operating system. Exploitation of this vulnerability requires physical access to the hardware controlle...