VYPR
Medium severity6.7NVD Advisory· Published Nov 18, 2025· Updated Jun 17, 2026

CVE-2025-37157

CVE-2025-37157

Description

A command injection vulnerability exists in the AOS-CX Operating System. Successful exploitation could allow an authenticated remote attacker to conduct a Remote Code Execution (RCE) on the affected system.

Affected products

3
  • cpe:2.3:o:hpe:arubaos-cx:*:*:*:*:*:*:*:*
    Range: >=10.10.0000,<10.10.1170
  • Hewlett Packard Enterprise (HPE)/HPE Aruba Networkign AOS-CXv5
    Range: 10.16.0000

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.