Broken Access Control Vulnerability in HPE Web-Based Management Interface
CVE-2025-37160
5.3MEDIUM
What is CVE-2025-37160?
A broken access control vulnerability in HPE's web-based management interface allows authenticated remote attackers with low privileges to access sensitive information. This exploitation may lead to unauthorized disclosure of critical data, compromising the security of the system.
Affected Version(s)
HPE Aruba Networking AOS-CX 10.16.0000 <= 10.16.1000
HPE Aruba Networking AOS-CX 10.16.0000 <= 10.16.1000
HPE Aruba Networking AOS-CX 10.15.0000 <= 10.15.1020
