Security Advisory

CVE-2025-34156

N/A
UNKNOWN

Vulnerability Description

Tibbo AggreGate Network Manager < 6.40.05 exposes sensitive system information through an unauthenticated endpoint at /cwmp/happyaxis.jsp. The page discloses Java system properties, server path details, and version information to unauthorized users, resulting in information disclosure that could aid further compromise.
Published Date October 23, 2025
Official Source NIST NVD Advisory