Hpe
hpe
183 CVEs • 557 products
Products (557)
Click to collapseToggle
Products (557)
Click to collapse
CVEs (183)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Hpe 1Aruba Networking Private 5g Core Jun 17, 2026 Apr 7, 2026 N/A· v4 9.6 CRITICAL· v3 N/A· v2 A vulnerability has been identified in the graphical user interface (GUI) of HPE Aruba Networking Private 5G Core On-Prem that could allow an attacker to abuse an open redirect vulnerability in the login flow using a cra...Show more |
A vulnerability in the web-based management interface of AOS-CX Switches could allow an unauthenticated remote attacker to redirect users to an arbitrary URL. |
1Hpe 1Aruba Networking Private 5g Core Jun 17, 2026 Feb 17, 2026 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Vulnerabilities in the API error handling of an HPE Aruba Networking 5G Core server API could allow an unauthenticated remote attacker to obtain sensitive information. Successful exploitation could allow an attacker to...Show more |
1Hpe 1Aruba Networking Private 5g Core Jun 17, 2026 Feb 17, 2026 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Vulnerabilities in the API error handling of an HPE Aruba Networking 5G Core server API could allow an unauthenticated remote attacker to obtain sensitive information. Successful exploitation could allow an attacker to...Show more |
1Hpe 1Aruba Networking Private 5g Core Jun 17, 2026 Feb 17, 2026 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A vulnerability in the management API of the affected product could allow an unauthenticated remote attacker to trigger service restarts. Successful exploitation could allow an attacker to disrupt services and negatively...Show more |
1Hpe 1Aruba Networking Private 5g Core Jun 17, 2026 Feb 17, 2026 N/A· v4 8.8 HIGH· v3 N/A· v2 An authentication bypass in the application API allows an unauthorized administrative account to be created. A remote attacker could exploit this vulnerability to create privileged user accounts. Successful exploitation...Show more |
A remote code execution issue exists in HPE OneView. |
A broken access control (BAC) vulnerability in the web-based management interface could allow an authenticated remote attacker with low privileges to view sensitive information. Successful exploitation of this vulnerabil...Show more |
A vulnerability in the web management interface of the AOS-CX OS user authentication service could allow an authenticated remote attacker to hijack an active user session. Successful exploitation may enable the attacker...Show more |
A command injection vulnerability exists in the AOS-CX Operating System. Successful exploitation could allow an authenticated remote attacker to conduct a Remote Code Execution (RCE) on the affected system. |
A command injection vulnerability exists in the AOS-CX Operating System. Successful exploitation could allow an authenticated remote attacker to conduct a Remote Code Execution (RCE) on the affected system. |
A platform-level denial-of-service (DoS) vulnerability exists in ArubaOS-CX software. Successful exploitation of this vulnerability could allow an attacker with administrative access to execute specific code that renders...Show more |
A vulnerability in the SSH restricted shell interface of the network management services allows improper access control for authenticated read-only users. If successfully exploited, this vulnerability could allow an atta...Show more |
An authentication bypass vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.18. |
An authentication bypass and disclosure of information vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.18. |
An hsqldb-related remote code execution vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.18. |
An information disclosure vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17. |
An information disclosure vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17. |
An hsqldb-related remote code execution vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17. |
An authentication bypass vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17. |