A vulnerability in the command line interface of affected devices could allow an authenticated remote attacker to conduct a command injection attack. Successful exploitation could allow an attacker to execute arbitrary commands on the underlying operating system.
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 18 Nov 2025 19:30:00 +0000

Type Values Removed Values Added
Description A vulnerability in the command line interface of affected devices could allow an authenticated remote attacker to conduct a command injection attack. Successful exploitation could allow an attacker to execute arbitrary commands on the underlying operating system.
Title Authenticated Command Injection Vulnerability Leading to Arbitrary Remote Command Execution
References
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: hpe

Published:

Updated: 2025-11-18T19:23:20.504Z

Reserved: 2025-04-16T01:28:25.375Z

Link: CVE-2025-37162

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2025-11-18T20:15:46.723

Modified: 2025-11-18T20:15:46.723

Link: CVE-2025-37162

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.