Vulnerability index

Browse CVEs

177 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Integrated Lights Out 6 Firmware MEDIUM 6.5
CVE-2026-63457

A potential denial of service vulnerability exists in HPE Integrated Lights-Out 6 (iLO 6) prior to v1.78.

Fix: 1.78+
Fix from $1,600 2026-08-05
Arubaos Cx HIGH 7.2
CVE-2026-63453

Buffer overflow vulnerabilities exist in the command line interface of AOS-CX. Successful exploitation of these vulnerabilities could allow a remote …

Fix: after 10.18.0001
Fix from $1,950 2026-07-21
Arubaos Cx HIGH 7.2
CVE-2026-63454

An authenticated path traversal vulnerability exists in AOS-CX. Successful exploitation of this vulnerability allows an attacker to copy arbitrary fi…

Fix: after 10.18.0001
Fix from $1,950 2026-07-21
Arubaos Cx HIGH 8.8
CVE-2026-44880

A buffer overflow vulnerability was found in the command line interface of AOS-CX. Successful exploitation of these vulnerabilities could allow an re…

Fix: after 10.18.0001
Fix from $1,950 2026-07-21
Aruba Networking Private 5g Core CRITICAL 9.6
CVE-2026-23818

A vulnerability has been identified in the graphical user interface (GUI) of HPE Aruba Networking Private 5G Core On-Prem that could allow an attacke…

Fix: 1.25.3.1+
Fix from $2,300 2026-04-07
Arubaos Cx HIGH 7.2
CVE-2026-23815

A vulnerability in a custom binary used in AOS-CX Switches' CLI could allow an authenticated remote attacker with high privileges to perform command …

Fix: after 10.17.0001
Fix from $1,950 2026-03-11
Arubaos Cx HIGH 7.2
CVE-2026-23816

A vulnerability in the command line interface of AOS-CX Switches could allow an authenticated remote attacker to execute arbitrary commands on the un…

Fix: after 10.17.0001
Fix from $1,950 2026-03-11
Arubaos Cx MEDIUM 6.1
CVE-2026-23817

A vulnerability in the web-based management interface of AOS-CX Switches could allow an unauthenticated remote attacker to redirect users to an arbit…

Fix: 10.10.1180 / 10.13.1161+
Fix from $1,600 2026-03-11
Arubaos Cx CRITICAL 9.8
CVE-2026-23813

A vulnerability has been identified in the web-based management interface of AOS-CX switches that could potentially allow an unauthenticated remote a…

Fix: after 10.17.0001
Fix from $2,300 2026-03-11
Arubaos Cx HIGH 8.8
CVE-2026-23814

A vulnerability in the command parameters of a certain AOS-CX CLI command could allow a low-privilege authenticated remote attacker to inject malicio…

Fix: after 10.17.0001
Fix from $1,950 2026-03-11
Autopass License Server CRITICAL 9.8
CVE-2026-23600

A remote authentication bypass vulnerability  exists in HPE AutoPass License Server (APLS).

Fix: 9.19+
Fix from $2,300 2026-03-02
Aruba Networking Private 5g Core MEDIUM 6.5
CVE-2026-23597

Vulnerabilities in the API error handling of an HPE Aruba Networking 5G Core server API could allow an unauthenticated remote attacker to obtain sen…

Fix: after 1.24.3.3
Fix from $1,600 2026-02-17
Aruba Networking Private 5g Core MEDIUM 6.5
CVE-2026-23598

Vulnerabilities in the API error handling of an HPE Aruba Networking 5G Core server API could allow an unauthenticated remote attacker to obtain sen…

Fix: after 1.24.3.3
Fix from $1,600 2026-02-17
Aruba Networking Private 5g Core HIGH 8.8
CVE-2026-23595

An authentication bypass in the application API allows an unauthorized administrative account to be created. A remote attacker could exploit this vul…

Fix: after 1.24.3.3
Fix from $1,950 2026-02-17
Aruba Networking Private 5g Core MEDIUM 6.5
CVE-2026-23596

A vulnerability in the management API of the affected product could allow an unauthenticated remote attacker to trigger service restarts. Successful …

Fix: after 1.24.3.3
Fix from $1,600 2026-02-17
Oneview CRITICAL 9.8
CVE-2025-37164 KEVEPSS 90%

A remote code execution issue exists in HPE OneView.

Fix: after 10.20.00
Fix from $2,300 2025-12-16
Arubaos Cx MEDIUM 6.5
CVE-2025-37160

A broken access control (BAC) vulnerability in the web-based management interface could allow an authenticated remote attacker with low privileges to…

Fix: 10.10.1170 / 10.13.1101+
Fix from $1,600 2025-11-18
Arubaos Cx HIGH 8.8
CVE-2025-37157

A command injection vulnerability exists in the AOS-CX Operating System. Successful exploitation could allow an authenticated remote attacker to cond…

Fix: 10.10.1170 / 10.13.1101+
Fix from $1,950 2025-11-18
Arubaos Cx HIGH 8.8
CVE-2025-37158

A command injection vulnerability exists in the AOS-CX Operating System. Successful exploitation could allow an authenticated remote attacker to cond…

Fix: 10.10.1170 / 10.13.1101+
Fix from $1,950 2025-11-18
Arubaos Cx HIGH 7.8
CVE-2025-37155

A vulnerability in the SSH restricted shell interface of the network management services allows improper access control for authenticated read-only u…

Fix: 10.10.1170 / 10.13.1101+
Fix from $1,950 2025-11-18
Arubaos Cx HIGH 7.3
CVE-2025-37159

A vulnerability in the web management interface of the AOS-CX OS user authentication service could allow an authenticated remote attacker to hijack a…

Fix: 10.10.1170 / 10.13.1101+
Fix from $1,950 2025-11-18
Arubaos Cx MEDIUM 6.8
CVE-2025-37156

A platform-level denial-of-service (DoS) vulnerability exists in ArubaOS-CX software. Successful exploitation of this vulnerability could allow an at…

Fix: 10.10.1170 / 10.13.1101+
Fix from $1,600 2025-11-18
Autopass License Server CRITICAL 9.8
CVE-2025-37105

An hsqldb-related remote code execution vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.18.

Fix: 9.18+
Fix from $2,300 2025-07-16
Autopass License Server CRITICAL 9.8
CVE-2025-37106

An authentication bypass and disclosure of information vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.18.

Fix: 9.18+
Fix from $2,300 2025-07-16
Autopass License Server CRITICAL 9.8
CVE-2025-37107

An authentication bypass vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.18.

Fix: 9.18+
Fix from $2,300 2025-07-16
Autopass License Server HIGH 8.0
CVE-2024-51768

An hsqldb-related remote code execution vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17.

Fix: 9.17+
Fix from $1,950 2025-07-14
Autopass License Server HIGH 7.5
CVE-2024-51769

An information disclosure vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17.

Fix: 9.17+
Fix from $1,950 2025-07-14
Autopass License Server HIGH 7.5
CVE-2024-51770

An information disclosure vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17.

Fix: 9.17+
Fix from $1,950 2025-07-14
Autopass License Server HIGH 7.3
CVE-2024-51767

An authentication bypass vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17.

Fix: 9.17+
Fix from $1,950 2025-07-14
Insight Remote Support CRITICAL 9.8
CVE-2025-37099

A remote code execution vulnerability exists in HPE Insight Remote Support (IRS) prior to v7.15.0.646.

Fix: 7.15.0.646+
Fix from $2,300 2025-07-01