Security Advisory
CVE-2025-49162
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Arris VIP1113 devices through 2025-05-30 with KreaTV SDK allow file overwrite via TFTP because a remote filename with a space character allows an attacker to control the local filename.