HPE AOS是美国HPE公司的一款操作系统。 HPE AOS 8存在安全漏洞,该漏洞源于基于Web的管理界面存在命令注入漏洞,可能导致执行任意命令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Hewlett Packard Enterprise (HPE) | ArubaOS (AOS) | 8.12.0.0 ~ 8.13.1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-37168 | 8.2 HIGH | Unauthenticated Arbitrary File Deletion Vulnerability in AOS-8 Operating System |
| CVE-2025-37186 | 7.8 HIGH | Local Privilege Escalation Vulnerability in HPE Aruba Networking Virtual Intranet Access ( |
| CVE-2025-37165 | 7.5 HIGH | Exposure of VLAN information in unintended network interfaces |
| CVE-2025-37166 | 7.5 HIGH | Unexpected shutdown in HPE Instant On Access Points after processing specific packets |
| CVE-2025-37169 | 7.2 HIGH | Stack Overflow Vulnerability in AOS-10 Web-Based Management Interface |
| CVE-2025-37171 | 7.2 HIGH | Authenticated Command Injection Vulnerabilities in AOS-8 Web-Based Management Interface |
| CVE-2025-37172 | 7.2 HIGH | Authenticated Command Injection Vulnerabilities in AOS-8 Web-Based Management Interface |
| CVE-2025-37173 | 7.2 HIGH | Improper Input Handling Vulnerability in Authenticated Configuration API Endpoint (AOS-10/ |
| CVE-2025-37174 | 7.2 HIGH | Authenticated Arbitrary File Write Vulnerability in AOS 10 and AOS-8 Web-Based Management |
| CVE-2025-37175 | 7.2 HIGH | Authenticated Arbitrary File Upload Vulnerability in AOS-10 or AOS-8 Web-Based Management |
| CVE-2025-37176 | 6.5 MEDIUM | Authenticated Command Injection Vulnerability in an AOS-8 operating system's internal work |
| CVE-2025-37177 | 6.5 MEDIUM | Authenticated Arbitrary File Deletion Vulnerability in AOS-10 or AOS-8 Command Line Interf |
| CVE-2025-37178 | 5.3 MEDIUM | Out-of-Bounds Read Vulnerabilities Leading to Process Crash in AOS-8 Operating System |
| CVE-2025-37179 | 5.3 MEDIUM | Out-of-Bounds Read Vulnerabilities Leading to Process Crash in AOS-8 Operating System |
No comments yet