← Back to CVE List
CVE-2025-37169NVD
Vulnerability Summary
A stack overflow vulnerability exists in the AOS-10 web-based management interface of a Mobility Gateway. Successful exploitation could allow an authenticated malicious actor to execute arbitrary code as a privileged user on the underlying operating system.
CVSS v3.1 Base Metrics — Score 7.2 (HIGH)
Attack VectorNetwork
Attack ComplexityLow
Privileges RequiredHigh
User InteractionNone
ScopeUnchanged
ConfidentialityHigh
IntegrityHigh
AvailabilityHigh
Affected & Patched Versions
- Arubanetworks Arubaos >= 10.3.0.0 and < 10.4.1.10
- Arubanetworks Arubaos >= 10.5.0.0 and < 10.7.2.2
- Arubanetworks Arubaos 10.4.1.10
- Arubanetworks Arubaos 10.7.2.2