CVE-2025-37169: Stack Overflow Vulnerability in AOS-10 Web-Based Management Interface
A stack overflow vulnerability exists in the AOS-10 web-based management interface of a Mobility Gateway. Successful exploitation could allow an authenticated malicious actor to execute arbitrary code as a privileged user on the underlying operating system.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-37169?
CVE-2025-37169 is classified as a critical severity vulnerability due to its potential to allow authenticated attackers to execute arbitrary code.
How do I fix CVE-2025-37169?
To mitigate CVE-2025-37169, it is recommended to upgrade affected systems to the latest version of AOS-10 that addresses the stack overflow vulnerability.
What products are affected by CVE-2025-37169?
CVE-2025-37169 affects specific versions of Aruba Networks AOS-10 web-based management interface on Mobility Gateways.
Who can exploit CVE-2025-37169?
An authenticated malicious actor can exploit CVE-2025-37169 to take control of the system.
What functionalities are compromised by CVE-2025-37169?
CVE-2025-37169 compromises system integrity by allowing arbitrary code execution as a privileged user.