CVE-2025-37174
Authenticated arbitrary file write vulnerability exists in the web-based management interface of mobility conductors running either AOS-10 or AOS-8 operating systems. Successful exploitation could allow an authenticated malicious actor to create or modify arbitrary files and execute arbitrary commands as a privileged user on the underlying operating system.
Vendor
Product
CWE
Yayın Tarihi
2026-01-13 20:16:05
Güncelleme
2026-01-23 16:38:12
Source Identifier
security-alert@hpe.com
KEV Date Added
-