6.8
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H
Description
A platform-level denial-of-service (DoS) vulnerability exists in ArubaOS-CX software. Successful exploitation of this vulnerability could allow an attacker with administrative access to execute specific code that renders the switch non-bootable and effectively non-functional.
Basic Information
ID
CVE-2025-37156
Source
hpe
Published
Nov 18, 2025 at 18:46
Modified
Nov 18, 2025 at 20:28
Affected Product
Vendor
Hewlett Packard Enterprise (HPE)
Product
HPE Aruba Networking AOS-CX
Version
10.16.0000
Affected Versions
Hewlett Packard Enterprise (HPE) HPE Aruba Networking AOS-CX 10.16.0000
Hewlett Packard Enterprise (HPE) HPE Aruba Networking AOS-CX 10.15.0000
Hewlett Packard Enterprise (HPE) HPE Aruba Networking AOS-CX 10.14.0000
Hewlett Packard Enterprise (HPE) HPE Aruba Networking AOS-CX 10.13.0000
Hewlett Packard Enterprise (HPE) HPE Aruba Networking AOS-CX 10.10.0000
Hewlett Packard Enterprise (HPE) HPE Aruba Networking AOS-CX 10.15.0000
Hewlett Packard Enterprise (HPE) HPE Aruba Networking AOS-CX 10.14.0000
Hewlett Packard Enterprise (HPE) HPE Aruba Networking AOS-CX 10.13.0000
Hewlett Packard Enterprise (HPE) HPE Aruba Networking AOS-CX 10.10.0000