VYPR
Unrated severityNVD Advisory· Published Jan 28, 2025· Updated Mar 13, 2025

Authenticated privilege escalation via broken access control

CVE-2025-23053

Description

A privilege escalation vulnerability exists in the web-based management interface of HPE Aruba Networking Fabric Composer. Successful exploitation could allow an authenticated low privilege operator user to change the state of certain settings of a vulnerable system.

Affected products

2
  • Hewlett Packard Enterprise (HPE)/HPE Aruba Networking Fabric Composer (AFC)v5
    Range: 7.0.0

Patches

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.