{"id":70300,"date":"2025-09-17T03:31:50","date_gmt":"2025-09-17T00:01:50","guid":{"rendered":"https:\/\/afaghhosting.net\/blog\/cve-2025-37123-authenticated-command-injection-leads-to-unauthorized-actions-in-cli-interface\/"},"modified":"2025-09-17T03:31:50","modified_gmt":"2025-09-17T00:01:50","slug":"cve-2025-37123-authenticated-command-injection-leads-to-unauthorized-actions-in-cli-interface","status":"publish","type":"post","link":"https:\/\/afaghhosting.net\/blog\/cve-2025-37123-authenticated-command-injection-leads-to-unauthorized-actions-in-cli-interface\/","title":{"rendered":"CVE-2025-37123 &#8211; Authenticated Command Injection leads to Unauthorized Actions in CLI  Interface"},"content":{"rendered":"<p><strong>CVE ID : <\/strong>CVE-2025-37123<br \/>\n<br \/>\n<strong>Published : <\/strong> Sept. 16, 2025, 10:30 p.m. | 27\u00a0minutes ago<br \/>\n<br \/>\n<strong>Description : <\/strong>A vulnerability in the command-line interface of HPE Aruba Networking EdgeConnect SD-WAN Gateways could allow an authenticated remote attacker to escalate privileges. Successful exploitation of this vulnerability may enable the attacker to execute arbitrary system commands with root privileges on the underlying operating system.<br \/>\n<br \/>\n<strong>Severity:<\/strong> 8.8 | HIGH<br \/>\n<br \/>\nVisit the link for more details, such as CVSS details, affected products, timeline, and more&#8230;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>CVE ID : CVE-2025-37123 Published : Sept. 16, 2025, 10:30 p.m. | 27\u00a0minutes ago Description : A vulnerability in the command-line interface of HPE Aruba Networking EdgeConnect SD-WAN Gateways could allow an authenticated remote attacker to escalate privileges. Successful exploitation of this vulnerability may enable the attacker to execute arbitrary system commands with root privileges &hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26],"tags":[],"class_list":["post-70300","post","type-post","status-publish","format-standard","hentry","category-vulnerability"],"_links":{"self":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/70300","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/comments?post=70300"}],"version-history":[{"count":0,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/70300\/revisions"}],"wp:attachment":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/media?parent=70300"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/categories?post=70300"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/tags?post=70300"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}