VYPR
Critical severity9.1NVD Advisory· Published Jul 23, 2025· Updated Jun 17, 2026

CVE-2025-40599

CVE-2025-40599

Description

An authenticated arbitrary file upload vulnerability exists in the SMA 100 series web management interface. A remote attacker with administrative privileges can exploit this flaw to upload arbitrary files to the system, potentially leading to remote code execution.

Affected products

5

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.