| CVE-2025-27085 | Arbitrary File Download Vulnerabilities in Web-Based Management Interface of AOS-10 GW and AOS-8 Controller/Mobility Conductor | Hewlett Packard Enterprise (HPE) | HPE Aruba Networking AOS | Medium | 4.9 | 2025-04-08 16:29:26 | Deep Dive |
| CVE-2025-27083 | Authenticated Command Injection Vulnerabilities in AOS-10 GW and AOS-8 Controller/Mobility Conductor Web-Based Management Interface | Hewlett Packard Enterprise (HPE) | HPE Aruba Networking AOS | High | 7.2 | 2025-04-08 16:26:51 | Deep Dive |
| CVE-2025-27082 | Authenticated Remote Code Execution Vulnerabilities in AOS-10 GW and AOS-8 Controller/Mobility Conductor Web-Based Management Interface via Arbitrary File Write | Hewlett Packard Enterprise (HPE) | HPE Aruba Networking AOS | High | 7.2 | 2025-04-08 16:22:51 | Deep Dive |
| CVE-2025-25039 | Authenticated Remote Command Injection in HPE Aruba Networking ClearPass Policy Manager Web-Based Management Interface | Hewlett Packard Enterprise (HPE) | HPE Aruba Networking ClearPass Policy Manager | Medium | 4.7 | 2025-02-04 18:13:23 | Deep Dive |
| CVE-2025-23060 | Sensitive Data Exposure Vulnerability in HPE Aruba Networking ClearPass Policy Manager (CPPM) | Hewlett Packard Enterprise (HPE) | HPE Aruba Networking ClearPass Policy Manager | Medium | 6.6 | 2025-02-04 18:11:41 | Deep Dive |
| CVE-2025-23059 | Sensitive Information Disclosure in HPE Aruba Networking ClearPass Policy Manager | Hewlett Packard Enterprise (HPE) | HPE Aruba Networking ClearPass Policy Manager | Medium | 6.8 | 2025-02-04 18:10:22 | Deep Dive |
| CVE-2025-23058 | Authenticated Broken Access Control Vulnerability in ClearPass Policy Manager Web-Based Management Interface | Hewlett Packard Enterprise (HPE) | HPE Aruba Networking ClearPass Policy Manager | High | 8.8 | 2025-02-04 18:07:57 | Deep Dive |
| CVE-2025-23053 | Authenticated privilege escalation via broken access control | Hewlett Packard Enterprise (HPE) | HPE Aruba Networking Fabric Composer (AFC) | Medium | 6.5 | 2025-01-28 17:21:46 | Deep Dive |
| CVE-2025-23054 | Authenticated Response Manipulation allows Unauthorized Actions in Management Interface | Hewlett Packard Enterprise (HPE) | HPE Aruba Networking Fabric Composer (AFC) | Medium | 6.5 | 2025-01-28 17:17:18 | Deep Dive |
| CVE-2025-23057 | Authenticated Stored Cross-Site Scripting (XSS) Vulnerability in HPE Aruba Networking Fabric Composer Web Management Interface | Hewlett Packard Enterprise (HPE) | HPE Aruba Networking Fabric Composer (AFC) | Medium | 5.5 | 2025-01-28 17:12:23 | Deep Dive |
| CVE-2025-23056 | Authenticated Stored Cross-Site Scripting (XSS) Vulnerability in HPE Aruba Networking Fabric Composer Web Management Interface | Hewlett Packard Enterprise (HPE) | HPE Aruba Networking Fabric Composer (AFC) | Medium | 5.5 | 2025-01-28 17:11:58 | Deep Dive |
| CVE-2025-23055 | Authenticated Stored Cross-Site Scripting (XSS) Vulnerability in HPE Aruba Networking Fabric Composer Web Management Interface | Hewlett Packard Enterprise (HPE) | HPE Aruba Networking Fabric Composer (AFC) | Medium | 5.5 | 2025-01-28 17:11:39 | Deep Dive |
| CVE-2025-23052 | Authenticated Command Injection Vulnerability allows Unauthorized Command Execution in CLI Interface | Hewlett Packard Enterprise (HPE) | HPE Aruba Networking AOS | High | 7.2 | 2025-01-14 17:38:44 | Deep Dive |
| CVE-2025-23051 | Authenticated Remote Code Execution in AOS Web-based Management Interface | Hewlett Packard Enterprise (HPE) | HPE Aruba Networking AOS | High | 7.2 | 2025-01-14 17:35:25 | Deep Dive |
| CVE-2024-54007 | Authenticated Remote Command Injection Vulnerability in the Web Interface of a 501 Wireless Client Bridge | Hewlett Packard Enterprise (HPE) | HPE Aruba Networking 501 Wireless Client Bridge | High | 7.2 | 2025-01-07 17:17:40 | Deep Dive |
| CVE-2024-54006 | Authenticated Remote Command Injection Vulnerability in the Web Interface of a 501 Wireless Client Bridge | Hewlett Packard Enterprise (HPE) | HPE Aruba Networking 501 Wireless Client Bridge | High | 7.2 | 2025-01-07 17:12:19 | Deep Dive |
| CVE-2024-54008 | Authenticated Remote Code Execution (RCE) in HPE Aruba Networking AirWave Management Platform | Hewlett Packard Enterprise (HPE) | HPE Aruba Networking AirWave Management Platform | High | 7.2 | 2024-12-10 18:23:20 | Deep Dive |
| CVE-2024-53672 | Authenticated Remote Command Injection in HPE Aruba Networking ClearPass Policy Manager Web-Based Management Interface | Hewlett Packard Enterprise (HPE) | HPE Aruba Networking ClearPass Policy Manager | Medium | 4.7 | 2024-12-03 20:14:37 | Deep Dive |
| CVE-2024-51773 | Authenticated Stored Cross-Site Scripting (XSS) in HPE Aruba Networking ClearPass Policy Manager Web-based Management Interface | Hewlett Packard Enterprise (HPE) | HPE Aruba Networking ClearPass Policy Manager | Medium | 4.8 | 2024-12-03 20:11:04 | Deep Dive |
| CVE-2024-51772 | Authenticated Deserialization Vulnerability in ClearPass Policy Manager Web-Based Management Interface Leading to a Remote Command Execution (RCE) | Hewlett Packard Enterprise (HPE) | HPE Aruba Networking ClearPass Policy Manager | Medium | 6.4 | 2024-12-03 20:08:00 | Deep Dive |