HPE Aruba Networking EdgeConnect SD-WAN Gateways是美国HPE公司的一款边缘网关设备。 HPE Aruba Networking EdgeConnect SD-WAN Gateways存在安全漏洞,该漏洞源于远程认证用户可在底层主机上运行任意命令,可能导致以root权限执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Hewlett Packard Enterprise (HPE) | HPE Aruba Networking EdgeConnect SD-WAN Gateway | 9.5.0.0 ~ 9.5.3.6 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-37123 | 8.8 HIGH | Authenticated Command Injection leads to Unauthorized Actions in CLI Interface |
| CVE-2025-37124 | 8.6 HIGH | Unauthenticated Access Vulnerability allows Transit Traffic Misrouting in SD-WAN Edge Inte |
| CVE-2025-37125 | 7.5 HIGH | Broken access control vulnerability in Firewall Configuration Leads to Unauthorized Acces |
| CVE-2025-37127 | 7.2 HIGH | Authenticated Replay Attack contains Cryptographic Vulnerability |
| CVE-2025-37128 | 6.8 MEDIUM | Authenticated Arbitrary Process Termination allows potential System Disruption in ECOS |
| CVE-2025-37129 | 6.7 MEDIUM | Authenticated Remote Code Execution allows Exploit in Scripts Feature |
| CVE-2025-37130 | 6.5 MEDIUM | Unrestricted Binary allows File Enumeration in Underlying Operating System |
| CVE-2025-37131 | 4.9 MEDIUM | Authenticated Arbitrary File Read allows Data Exposure in CLI Interface |
No comments yet