Medium severity6.5NVD Advisory· Published Jan 28, 2025· Updated Jun 17, 2026
CVE-2025-23053
CVE-2025-23053
Description
A privilege escalation vulnerability exists in the web-based management interface of HPE Aruba Networking Fabric Composer. Successful exploitation could allow an authenticated low privilege operator user to change the state of certain settings of a vulnerable system.
Affected products
3- cpe:2.3:a:arubanetworks:fabric_composer:*:*:*:*:*:*:*:*Range: >=7.0.0,<7.1.1
- Hewlett Packard Enterprise (HPE)/HPE Aruba Networking Fabric Composer (AFC)v5Range: 7.0.0
Patches
Vulnerability mechanics
References
1- support.hpe.com/hpesc/public/docDisplaynvdVendor Advisory
News mentions
0No linked articles in our index yet.