CVE 6.8 MEDIUM

ArubaOS-CX Platform-Level Denial-of-Service Vulnerability_CVE-2025-37156

6.8 / 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H

Description

A platform-level denial-of-service (DoS) vulnerability exists in ArubaOS-CX software. Successful exploitation of this vulnerability could allow an attacker with administrative access to execute specific code that renders the switch non-bootable and effectively non-functional.

Basic Information

ID CVE-2025-37156
Source hpe
Published Nov 18, 2025 at 18:46
Modified Nov 18, 2025 at 20:28

Affected Product

Vendor Hewlett Packard Enterprise (HPE)
Product HPE Aruba Networking AOS-CX
Version 10.16.0000
Affected Versions Hewlett Packard Enterprise (HPE) HPE Aruba Networking AOS-CX 10.16.0000
Hewlett Packard Enterprise (HPE) HPE Aruba Networking AOS-CX 10.15.0000
Hewlett Packard Enterprise (HPE) HPE Aruba Networking AOS-CX 10.14.0000
Hewlett Packard Enterprise (HPE) HPE Aruba Networking AOS-CX 10.13.0000
Hewlett Packard Enterprise (HPE) HPE Aruba Networking AOS-CX 10.10.0000

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.