CVE 6.5 MEDIUM

Unauthenticated Improper Access Control in management API allows unauthorized service disruption_CVE-2026-23596

6.5 / 10
MEDIUM
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Description

A vulnerability in the management API of the affected product could allow an unauthenticated remote attacker to trigger service restarts. Successful exploitation could allow an attacker to disrupt services and negatively impact system availability.

Basic Information

ID CVE-2026-23596
Source hpe
Published Feb 17, 2026 at 20:46

Affected Product

Vendor Hewlett Packard Enterprise (HPE)
Product HPE Aruba Networking Private 5G Core
Version 1.24.3.0
Affected Versions Hewlett Packard Enterprise (HPE) HPE Aruba Networking Private 5G Core 1.24.3.0

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.