← back
CVE-2025-37131mediumCWE-284

Authenticated Arbitrary File Read allows Data Exposure in CLI Interface

13Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 4.9epss 0.3%
exploitation probability
0.3%top 77% of all CVEs
observed exploitation
nono source reports it
A vulnerability in EdgeConnect SD-WAN ECOS could allow an authenticated remote threat actor with admin privileges to access sensitive unauthorized system files. Under certain conditions, this could lead to exposure and exfiltration of sensitive information.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N