CVE-2025-23051
Severity CVSS v4.0:
Pending analysis
Type:
CWE-94
Code Injection
Publication date:
14/01/2025
Last modified:
15/04/2026
Description
An authenticated parameter injection vulnerability exists in the web-based management interface of the AOS-8 and AOS-10 Operating Systems. Successful exploitation could allow an authenticated user to leverage parameter injection to overwrite arbitrary system files.
Impact
Base Score 3.x
7.20
Severity 3.x
HIGH



