An authenticated parameter injection vulnerability exists in the web-based management interface of the AOS-8 and AOS-10 Operating Systems. Successful exploitation could allow an authenticated user to leverage parameter injection to overwrite arbitrary system files.
References
Configurations
No configuration.
History
23 Jan 2025, 22:15
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
|
CWE | CWE-94 |
14 Jan 2025, 18:16
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-01-14 18:16
Updated : 2025-01-23 22:15
NVD link : CVE-2025-23051
Mitre link : CVE-2025-23051
CVE.ORG link : CVE-2025-23051
JSON object : View
Products Affected
No product.
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')