CVE-2025-37176: Authenticated Command Injection Vulnerability in an AOS-8 operating system's internal workflow
A command injection vulnerability in AOS-8 allows an authenticated privileged user to alter a package header to inject shell commands, potentially affecting the execution of internal operations. Successful exploit could allow an authenticated malicious actor to execute commands with the privileges of the impacted mechanism.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-37176?
CVE-2025-37176 is considered a high-severity vulnerability due to its potential for exploitation by authenticated privileged users.
How do I fix CVE-2025-37176?
To fix CVE-2025-37176, it is recommended to update to the latest version of A10 Networks AOS-8 that addresses this vulnerability.
What types of users are affected by CVE-2025-37176?
CVE-2025-37176 affects authenticated privileged users who have access to the AOS-8 operating system.
What are the potential consequences of CVE-2025-37176?
The potential consequences of CVE-2025-37176 include unauthorized command execution and disruption of internal operations within the AOS-8 system.
Is CVE-2025-37176 a common vulnerability?
CVE-2025-37176 is not categorized as a common vulnerability but poses significant risks when exploited due to its command injection nature.