Hewlett Packard Enterprise AOS(HPE AOS)是美国慧与(Hewlett Packard Enterprise)公司的一款用于数据中心、园区和边缘的网络操作系统。 Hewlett Packard Enterprise AOS存在操作系统命令注入漏洞,该漏洞源于系统二进制文件存在漏洞,允许认证远程攻击者通过CLI注入命令到底层操作系统,可能导致系统完全被接管。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Hewlett Packard Enterprise (HPE) | AOS-10 AP | 10.7.0.0 ~ 10.7.0.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-27083 | 7.2 HIGH | Authenticated Command Injection Vulnerabilities in AOS-10 GW and AOS-8 Controller/Mobility |
| CVE-2025-27082 | 7.2 HIGH | Authenticated Remote Code Execution Vulnerabilities in AOS-10 GW and AOS-8 Controller/Mobi |
| CVE-2025-27079 | 6.0 MEDIUM | Arbitrary File Creation vulnerability allows for Authenticated Remote Code Execution in CL |
| CVE-2025-27084 | 5.4 MEDIUM | Reflected Cross-Site Scripting (XSS) Vulnerability in Captive Portal (CP) of an AOS-10 GW |
| CVE-2025-27085 | 4.9 MEDIUM | Arbitrary File Download Vulnerabilities in Web-Based Management Interface of AOS-10 GW and |
No comments yet