Command Injection Vulnerability in HPE Devices
CVE-2025-37162
6.5MEDIUM
What is CVE-2025-37162?
A command injection vulnerability has been identified in the command line interface of specific HPE devices. This flaw allows authenticated remote attackers to execute arbitrary commands on the underlying operating system. By exploiting this vulnerability, attackers could perform unauthorized operations on affected devices, potentially compromising the system's integrity and data security. It is crucial for users to be aware of this issue and apply appropriate mitigations as soon as possible.
Affected Version(s)
HPE Aruba Networking 100 Series Cellular Bridge 10.7.0.0 <= 10.7.1.1
