PT-2026-2457 · Aos-8+1 · Aos-8+1

Moonv

·

Published

2026-01-13

·

Updated

2026-01-13

·

CVE-2025-37173

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions AOS-10 AOS-8
Description An improper input handling issue exists in the web-based management interface of mobility conductors. Exploitation could allow an authenticated malicious actor with valid credentials to trigger unintended behavior on the affected system. The vulnerability is present in the way the system handles input.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

CVE-2025-37173

Affected Products

Aos 10
Aos-8