📦 Arubaos Cx

by Hpe

🔍 What is Arubaos Cx?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-37155

HIGH CVSS 7.8 Nov 18, 2025

This vulnerability allows authenticated read-only SSH users to bypass access controls and gain administrator privileges on affected network management systems. It affects systems using the SSH restric...

CVE-2023-3718

HIGH CVSS 8.8 Aug 1, 2023

CVE-2023-3718 is an authenticated command injection vulnerability in Aruba AOS-CX switches that allows attackers with CLI access to execute arbitrary commands as privileged users. This enables complet...

CVE-2023-1168

HIGH CVSS 7.2 Mar 22, 2023

This CVE describes an authenticated remote code execution vulnerability in Aruba's AOS-CX Network Analytics Engine. Attackers with valid credentials can execute arbitrary code as privileged users, pot...

CVE-2021-41001

HIGH CVSS 8.8 Mar 2, 2022

An authenticated remote code execution vulnerability in Aruba AOS-CX Network Analytics Engine allows attackers with valid credentials to execute arbitrary commands on affected switches. This affects m...

CVE-2025-37160

MEDIUM CVSS 5.3 Nov 18, 2025

This broken access control vulnerability allows authenticated low-privilege users to access sensitive information through the web management interface. Organizations using affected HPE products with w...

CVE-2025-37156

MEDIUM CVSS 6.8 Nov 18, 2025

This CVE describes a platform-level denial-of-service vulnerability in ArubaOS-CX software where an attacker with administrative access can execute specific code that renders the switch non-bootable a...

CVE-2025-37157

MEDIUM CVSS 6.7 Nov 18, 2025

A command injection vulnerability in AOS-CX Operating System allows authenticated remote attackers to execute arbitrary commands on affected systems. This affects organizations using vulnerable versio...

CVE-2025-37158

MEDIUM CVSS 6.7 Nov 18, 2025

A command injection vulnerability in the AOS-CX Operating System allows authenticated remote attackers to execute arbitrary commands on affected systems. This affects organizations using HPE Aruba net...

CVE-2025-37159

MEDIUM CVSS 5.8 Nov 18, 2025

This vulnerability allows an authenticated remote attacker to hijack active user sessions in the AOS-CX OS web management interface, potentially leading to unauthorized access to sensitive configurati...