7.2
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Description
A stack overflow vulnerability exists in the AOS-10 web-based management interface of a Mobility Gateway. Successful exploitation could allow an authenticated malicious actor to execute arbitrary code as a privileged user on the underlying operating system.
Basic Information
ID
CVE-2025-37169
Source
hpe
Published
Jan 13, 2026 at 20:03
Modified
Jan 13, 2026 at 20:06
Affected Product
Vendor
Hewlett Packard Enterprise (HPE)
Product
ArubaOS (AOS)
Version
10.6.0.0
Affected Versions
Hewlett Packard Enterprise (HPE) ArubaOS (AOS) 10.6.0.0
Hewlett Packard Enterprise (HPE) ArubaOS (AOS) 10.3.0.0
Hewlett Packard Enterprise (HPE) ArubaOS (AOS) 10.3.0.0