Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Hewlett Packard Enterprise (HPE) — Vulnerabilities & Security Advisories 418

Browse all 418 CVE security advisories affecting Hewlett Packard Enterprise (HPE). AI-powered Chinese analysis, POCs, and references for each vulnerability.

Top products by Hewlett Packard Enterprise (HPE):Aruba Mobility Conductor (formerly Mobility Master); Aruba Mobility Controllers; WLAN Gateways and SD-WAN Gateways managed by Aruba CentralAruba ClearPass Policy ManagerArubaOS (AOS)EdgeConnect SD-WAN OrchestratorAruba EdgeConnect Enterprise SoftwareAOS-8 Instant and AOS-10 APAruba Access Points running InstantOS and ArubaOS 10Aruba Access Points: 100 Series; 103 Series; 110 Series; 120 Series; 130 Series; 200 Series; 207 Series; 210 Series; 220 Series; 260 Series; 300 Series; 303 Series; 310 Series; 318 Series Hardened Access Points; 320 Series; 330 Series; 340 Series; 370 Series; 500 Series; 510 Series; 530 Series; 550 Series; 630 Series; 650 Series; Aruba EdgeConnect Enterprise Orchestration SoftwareHPE OneViewHPE Aruba Networking ClearPass Policy ManagerAOS-CXHPE Aruba Networking EdgeConnect SD-WAN GatewayHPE Athonet CoreHPE StoreOnce SoftwareArubaOS Wi-Fi Controllers and Campus/Remote Access PointsHPE 3PAR Service ProcessorHPE Aruba Networking AOSHPE 3PAR StoreServ Management and Core Software MediaHPE Aruba Networking Access Points, Instant AOS-8, and AOS-10Aruba OSHPE Aruba Networking Fabric Composer (AFC)HPE Aruba Networking AOS-CXHPE Aruba Networking InstantOS and Aruba Access Points running ArubaOS 10HPE Aruba Networking Private 5G CoreHPE Aruba Networking EdgeConnect SD-WANHPE Insight Remote SupportClearPass Policy Manager (CPPM)HPE Aruba Networking Wireless Operating Systems (AOS-8 & AOS-10)HPE Aruba Networking Wireless Operating System (AOS-10 & AOS-8)
CVE IDTitleCVSSSeverityPublished
CVE-2025-37090 Hewlett Packard Enterprise StoreOnce 安全漏洞 — HPE StoreOnce Software 9.8AICriticalAI2025-06-02
CVE-2025-37089 Hewlett Packard Enterprise StoreOnce 安全漏洞 — HPE StoreOnce Software 8.8AIHighAI2025-06-02
CVE-2025-37088 Hewlett Packard Enterprise Cray Data Virtualization Service 安全漏洞 — HPE Cray Data Virtualization Service (DVS) 6.3 -2025-04-22
CVE-2025-27087 Hewlett Packard Enterprise Cray Operating System 安全漏洞 — HPE Cray Operating System (COS) 5.5 -2025-04-22
CVE-2025-37087 Hewlett Packard Enterprise Performance Cluster Manager 安全漏洞 — HPE Performance Cluster Manager (HPCM) 6.5 -2025-04-22
CVE-2025-27084 Reflected Cross-Site Scripting (XSS) Vulnerability in Captive Portal (CP) of an AOS-10 GW and AOS-8 Controller/Mobility Conductor Web-based Management Interface — HPE Aruba Networking AOS 5.4 Medium2025-04-08
CVE-2025-27085 Arbitrary File Download Vulnerabilities in Web-Based Management Interface of AOS-10 GW and AOS-8 Controller/Mobility Conductor — HPE Aruba Networking AOS 4.9 Medium2025-04-08
CVE-2025-27083 Authenticated Command Injection Vulnerabilities in AOS-10 GW and AOS-8 Controller/Mobility Conductor Web-Based Management Interface — HPE Aruba Networking AOS 7.2 High2025-04-08
CVE-2025-27082 Authenticated Remote Code Execution Vulnerabilities in AOS-10 GW and AOS-8 Controller/Mobility Conductor Web-Based Management Interface via Arbitrary File Write — HPE Aruba Networking AOS 7.2 High2025-04-08
CVE-2025-27079 Arbitrary File Creation vulnerability allows for Authenticated Remote Code Execution in CLI Interface — AOS-10 AP 6.0 Medium2025-04-08
CVE-2025-27078 Authenticated Remote Command Execution caused by Insecure Function Usage in System Binary — AOS-10 AP 6.5 Medium2025-04-08
CVE-2025-25041 Arbitrary File Overwrite in HPE Aruba Networking Virtual Intranet Access (VIA) Microsoft Windows Client — Virtual Intranet Access (VIA) 5.5 Medium2025-04-01
CVE-2024-24456 Hewlett Packard Enterprise Athonet Mobile Core 安全漏洞 — HPE Athonet Core 5.9 Medium2025-03-31
CVE-2025-27080 Authenticated Sensitive Information Disclosure exposes Credentials in AOS-CX Command Line Interface — AOS-CX 6.0 Medium2025-03-18
CVE-2025-25042 Authenticated Access Control Vulnerability allows Sensitive Information Disclosure in AOS-CX REST Interface — AOS-CX 4.3 Medium2025-03-18
CVE-2025-25040 Failure to Properly Enforce Port ACLs on CPU generated packets in CX 9300 Switches — AOS-CX 3.3 Low2025-03-18
CVE-2025-25039 Authenticated Remote Command Injection in HPE Aruba Networking ClearPass Policy Manager Web-Based Management Interface — HPE Aruba Networking ClearPass Policy Manager 4.7 Medium2025-02-04
CVE-2025-23060 Sensitive Data Exposure Vulnerability in HPE Aruba Networking ClearPass Policy Manager (CPPM) — HPE Aruba Networking ClearPass Policy Manager 6.6 Medium2025-02-04
CVE-2025-23059 Sensitive Information Disclosure in HPE Aruba Networking ClearPass Policy Manager — HPE Aruba Networking ClearPass Policy Manager 6.8 Medium2025-02-04
CVE-2025-23058 Authenticated Broken Access Control Vulnerability in ClearPass Policy Manager Web-Based Management Interface — HPE Aruba Networking ClearPass Policy Manager 8.8 High2025-02-04
CVE-2025-23053 Authenticated privilege escalation via broken access control — HPE Aruba Networking Fabric Composer (AFC) 6.5 Medium2025-01-28
CVE-2025-23054 Authenticated Response Manipulation allows Unauthorized Actions in Management Interface — HPE Aruba Networking Fabric Composer (AFC) 6.5 Medium2025-01-28
CVE-2025-23057 Authenticated Stored Cross-Site Scripting (XSS) Vulnerability in HPE Aruba Networking Fabric Composer Web Management Interface — HPE Aruba Networking Fabric Composer (AFC) 5.5 Medium2025-01-28
CVE-2025-23056 Authenticated Stored Cross-Site Scripting (XSS) Vulnerability in HPE Aruba Networking Fabric Composer Web Management Interface — HPE Aruba Networking Fabric Composer (AFC) 5.5 Medium2025-01-28
CVE-2025-23055 Authenticated Stored Cross-Site Scripting (XSS) Vulnerability in HPE Aruba Networking Fabric Composer Web Management Interface — HPE Aruba Networking Fabric Composer (AFC) 5.5 Medium2025-01-28
CVE-2025-23052 Authenticated Command Injection Vulnerability allows Unauthorized Command Execution in CLI Interface — HPE Aruba Networking AOS 7.2 High2025-01-14
CVE-2025-23051 Authenticated Remote Code Execution in AOS Web-based Management Interface — HPE Aruba Networking AOS 7.2 High2025-01-14
CVE-2024-54010 Unauthenticated Traffic Handling Flaw Allows Packet Leakage on HPE Aruba Networking CX 10000 series switches — AOS-CX 3.4 Low2025-01-08
CVE-2024-54007 Authenticated Remote Command Injection Vulnerability in the Web Interface of a 501 Wireless Client Bridge — HPE Aruba Networking 501 Wireless Client Bridge 7.2 High2025-01-07
CVE-2024-54006 Authenticated Remote Command Injection Vulnerability in the Web Interface of a 501 Wireless Client Bridge — HPE Aruba Networking 501 Wireless Client Bridge 7.2 High2025-01-07

This page lists every published CVE security advisory associated with Hewlett Packard Enterprise (HPE). Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.