CNNVD-202510-1940 Information

CNNVD ID

CNNVD-202510-1940

CVE-2025-37140

  • CNNVD Published: 2025-10-14

Description (Chinese)

HPE AOS是美国HPE公司的一款操作系统。 HPE AOS存在安全漏洞,该漏洞源于CLI二进制文件存在任意文件下载漏洞,可能导致经过身份验证的攻击者下载任意文件。

Description (English)

HPE AOS is an operating system of the United States company HPE. HPE AOS has a security loophole, which stems from an arbitrary download loophole of the CLI binary file, which may lead to the downloading of any document by an identified assailant.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

HPE

Published

2025-10-14

Last Modified

2026-02-24

References

https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw04957en_us&docLocale=en_US https://access.redhat.com/security/cve/cve-2025-37140

Patch

https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw04957en_us&docLocale=en_US

Share on: