CVE-2025-40599: Malicious File Upload
An authenticated arbitrary file upload vulnerability exists in the SMA 100 series web management interface. A remote attacker with administrative privileges can exploit this flaw to upload arbitrary files to the system, potentially leading to remote code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-40599?
CVE-2025-40599 is considered a high severity vulnerability due to its potential for remote code execution.
How do I fix CVE-2025-40599?
To fix CVE-2025-40599, administrators should update the SMA 100 series software to the latest patched version.
Who is affected by CVE-2025-40599?
CVE-2025-40599 affects users of the SMA 100 series that have administrative privileges.
What type of vulnerability is CVE-2025-40599?
CVE-2025-40599 is an authenticated arbitrary file upload vulnerability.
What can attackers do with CVE-2025-40599?
Attackers with administrative access can exploit CVE-2025-40599 to upload arbitrary files, which may lead to remote code execution.