CVE-2025-37175
Arbitrary file upload vulnerability exists in the web-based management interface of mobility conductors running either AOS-10 or AOS-8 operating systems. Successful exploitation could allow an authenticated malicious actor to upload arbitrary files as a privilege user and execute arbitrary commands on the underlying operating system.
Vendor
Product
CWE
Yayın Tarihi
2026-01-13 20:16:05
Güncelleme
2026-01-23 16:37:56
Source Identifier
security-alert@hpe.com
KEV Date Added
-