Description
A vulnerability in a system binary of AOS-8 Instant and AOS-10 AP could allow an authenticated remote attacker to inject commands into the underlying operating system while using the CLI. Successful exploitation could lead to complete system compromise.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-10281 | A vulnerability in a system binary of AOS-8 Instant and AOS-10 AP could allow an authenticated remote attacker to inject commands into the underlying operating system while using the CLI. Successful exploitation could lead to complete system compromise. |
References
History
Tue, 08 Apr 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-78 | |
| Metrics |
ssvc
|
Tue, 08 Apr 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability in a system binary of AOS-8 Instant and AOS-10 AP could allow an authenticated remote attacker to inject commands into the underlying operating system while using the CLI. Successful exploitation could lead to complete system compromise. | |
| Title | Authenticated Remote Command Execution caused by Insecure Function Usage in System Binary | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: hpe
Published:
Updated: 2026-02-26T18:28:38.521Z
Reserved: 2025-02-18T14:05:41.921Z
Link: CVE-2025-27078
Updated: 2025-04-08T16:57:25.237Z
Status : Deferred
Published: 2025-04-08T16:15:25.683
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-27078
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD