CVE-2025-37171: Authenticated Command Injection Vulnerabilities in AOS-8 Web-Based Management Interface
Authenticated command injection vulnerabilities exist in the web-based management interface of mobility conductors running AOS-8 operating system. Successful exploitation could allow an authenticated malicious actor to execute arbitrary commands as a privileged user on the underlying operating system.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-37171?
CVE-2025-37171 has a high severity rating due to its potential for authenticated command injection attacks.
How do I fix CVE-2025-37171?
To fix CVE-2025-37171, apply the latest security patches provided by AOS for the AOS-8 operating system.
Who is affected by CVE-2025-37171?
CVE-2025-37171 affects mobility conductors running the AOS-8 operating system with a web-based management interface.
What type of vulnerability is CVE-2025-37171?
CVE-2025-37171 is classified as an authenticated command injection vulnerability.
What could attackers do with CVE-2025-37171?
Attackers exploiting CVE-2025-37171 could execute arbitrary commands on the affected system with authenticated access.