PT-2025-41990 · Unknown · Network Access Point Configuration Services

·

CVE-2025-37146

·

Published

2025-10-14

·

Updated

2025-10-16

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions network access point configuration services (affected versions not specified)
Description A flaw exists in the web-based management interface of network access point configuration services that could allow a remote attacker with authentication to execute commands on the operating system. Successful exploitation may allow an attacker to execute arbitrary commands with the privileges of the web management interface, potentially leading to full compromise of the device.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-37146

Affected Products

Network Access Point Configuration Services