CNNVD-202511-2001 Information

CNNVD ID

CNNVD-202511-2001

CVE-2025-37155

  • CNNVD Published: 2025-11-18

Description (Chinese)

HPE Aruba Networking AOS-CX是美国HPE公司的一系列交换机设备。 HPE Aruba Networking AOS-CX存在安全漏洞,该漏洞源于SSH受限shell接口访问控制不当,可能导致只读用户获得管理员权限。

Description (English)

HPE Aruba Networking AOS-CX is a series of switch equipment for HPE in the United States. There is a security loophole in HPE Aruba Networking AOS-CX, which stems from inadequate access controls at the SSH restricted Shell interface, which may lead to read-only users gaining administrator privileges.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

HPE

Published

2025-11-18

Last Modified

2026-02-24

References

https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw04888en_us&docLocale=en_US https://access.redhat.com/security/cve/cve-2025-37155

Patch

https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw04888en_us&docLocale=en_US

Share on: