An authenticated arbitrary file upload vulnerability exists in the SMA 100 series web management interface. A remote attacker with administrative privileges can exploit this flaw to upload arbitrary files to the system, potentially leading to remote code execution.
References
Configurations
No configuration.
History
23 Jul 2025, 14:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-23 14:15
Updated : 2025-07-25 15:29
NVD link : CVE-2025-40599
Mitre link : CVE-2025-40599
CVE.ORG link : CVE-2025-40599
JSON object : View
Products Affected
No product.
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type