A command injection vulnerability exists in the AOS-CX Operating System. Successful exploitation could allow an authenticated remote attacker to conduct a Remote Code Execution (RCE) on the affected system.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-37157.json"
[
{
"events": [
{
"introduced": "10.10.0000"
},
{
"fixed": "10.10.1170"
}
]
},
{
"events": [
{
"introduced": "10.13.0000"
},
{
"fixed": "10.13.1101"
}
]
},
{
"events": [
{
"introduced": "10.14.0000"
},
{
"fixed": "10.14.1060"
}
]
},
{
"events": [
{
"introduced": "10.15.0000"
},
{
"fixed": "10.15.1030"
}
]
},
{
"events": [
{
"introduced": "10.16.0000"
},
{
"fixed": "10.16.1001"
}
]
}
]