VYPR
Medium severity6.8NVD Advisory· Published Nov 18, 2025· Updated Jun 17, 2026

CVE-2025-37156

CVE-2025-37156

Description

A platform-level denial-of-service (DoS) vulnerability exists in ArubaOS-CX software. Successful exploitation of this vulnerability could allow an attacker with administrative access to execute specific code that renders the switch non-bootable and effectively non-functional.

Affected products

3
  • cpe:2.3:o:hpe:arubaos-cx:*:*:*:*:*:*:*:*
    Range: >=10.10.0000,<10.10.1170
  • Hewlett Packard Enterprise (HPE)/HPE Aruba Networking AOS-CXv5
    Range: 10.16.0000

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.