Hewlett Packard Enterprise AOS(HPE AOS)是美国慧与(Hewlett Packard Enterprise)公司的一款用于数据中心、园区和边缘的网络操作系统。 Hewlett Packard Enterprise AOS存在操作系统命令注入漏洞,该漏洞源于文件创建过程存在漏洞,允许认证远程攻击者执行远程代码执行,可能导致执行任意操作系统命令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Hewlett Packard Enterprise (HPE) | AOS-10 AP | 10.7.0.0 ~ 10.7.0.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-27083 | 7.2 HIGH | Authenticated Command Injection Vulnerabilities in AOS-10 GW and AOS-8 Controller/Mobility |
| CVE-2025-27082 | 7.2 HIGH | Authenticated Remote Code Execution Vulnerabilities in AOS-10 GW and AOS-8 Controller/Mobi |
| CVE-2025-27078 | 6.5 MEDIUM | Authenticated Remote Command Execution caused by Insecure Function Usage in System Binary |
| CVE-2025-27084 | 5.4 MEDIUM | Reflected Cross-Site Scripting (XSS) Vulnerability in Captive Portal (CP) of an AOS-10 GW |
| CVE-2025-27085 | 4.9 MEDIUM | Arbitrary File Download Vulnerabilities in Web-Based Management Interface of AOS-10 GW and |
No comments yet