PT-2025-44153 · Unknown · Tropos 4Th Gen

Published

2025-10-28

·

Updated

2025-10-28

·

CVE-2025-1037

CVSS v4.0

7.5

High

VectorAV:A/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions TropOS 4th Gen (affected versions not specified)
Description An authenticated user with the ability to run user level shell commands can enable access via secure shell (SSH) to an unrestricted root shell by making minor configuration changes to the device. This is possible through abuse of specific scripts and executables that allow commands to be run as root from an unprivileged context.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2025-1037

Affected Products

Tropos 4Th Gen