CVE-2025-37137: Authenticated Arbitrary File Deletion Vulnerabilities in AOS-8 Controller/Mobility Conductor Command Line Interface (CLI)
Arbitrary file deletion vulnerabilities have been identified in the command-line interface of an AOS-8 Controller/Mobility Conductor. Successful exploitation of these vulnerabilities could allow an authenticated remote malicious actor to delete arbitrary files within the affected system.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-37137?
CVE-2025-37137 is considered a high-severity vulnerability due to its potential for arbitrary file deletion by authenticated remote attackers.
How do I fix CVE-2025-37137?
To fix CVE-2025-37137, it is recommended to apply the latest security patches provided by the vendor for the AOS-8 Controller/Mobility Conductor.
Who is affected by CVE-2025-37137?
CVE-2025-37137 affects users of the AOS-8 Controller and Mobility Conductor systems.
What kind of attack does CVE-2025-37137 enable?
CVE-2025-37137 enables authenticated remote malicious actors to delete arbitrary files on affected systems.
Is CVE-2025-37137 easy to exploit?
Exploitation of CVE-2025-37137 requires authentication, but it can be performed by remote attackers, making it a serious concern.