AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2025-1037

UNKNOWN · CVSS N/A EPSS 0.14%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-10-28 · Last synced 2026-08-04

CyberRota Analysis

This vulnerability has an unknown severity rating. Exploitation may require the attacker to be authenticated.

CVE
CVE-2025-1037
Severity
UNKNOWN
CVSS
N/A
EPSS
0.14%

Original NVD Description

By making minor configuration changes to the TropOS 4th Gen device, an authenticated user with the ability to run user level shell commands can enable access via secure shell (SSH) to an unrestricted root shell. This is possible through abuse of a particular set of scripts and executables that allow for certain commands to be run as root from an unprivileged context.