A broken access control (BAC) vulnerability in the web-based management interface could allow an authenticated remote attacker with low privileges to view sensitive information. Successful exploitation of this vulnerability could enable the attacker to disclose sensitive data.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-37160.json"
[
{
"events": [
{
"introduced": "10.10.0000"
},
{
"fixed": "10.10.1170"
}
]
},
{
"events": [
{
"introduced": "10.13.0000"
},
{
"fixed": "10.13.1101"
}
]
},
{
"events": [
{
"introduced": "10.14.0000"
},
{
"fixed": "10.14.1060"
}
]
},
{
"events": [
{
"introduced": "10.15.0000"
},
{
"fixed": "10.15.1030"
}
]
},
{
"events": [
{
"introduced": "10.16.0000"
},
{
"fixed": "10.16.1001"
}
]
}
]