PT-2025-4794 · Hewlett Packard · Hpe Aruba Networking Aos

CVE-2025-23052

·

Published

2025-01-14

·

Updated

2025-01-23

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
The network management service is affected by an authenticated command injection issue in its command line interface, which could allow an attacker to execute arbitrary commands as a privileged user on the underlying operating system. Unfortunately, the specific versions of the network management service that are affected are not mentioned. An exploit for this issue may be available, posing a significant security risk and potentially allowing attackers to gain privileged access. #NetworkManagementService #CommandInjection #AuthenticatedVulnerability #PrivilegedAccess #ArbitraryCommandExecution #SecurityRisk #Exploit #NetworkService #CommandLineInterface

Fix

Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-23052

Affected Products

Hpe Aruba Networking Aos