PT-2025-4794 · Hewlett Packard · Hpe Aruba Networking Aos

Published

2025-01-14

·

Updated

2025-01-23

·

CVE-2025-23052

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
The network management service is affected by an authenticated command injection issue in its command line interface, which could allow an attacker to execute arbitrary commands as a privileged user on the underlying operating system. Unfortunately, the specific versions of the network management service that are affected are not mentioned. An exploit for this issue may be available, posing a significant security risk and potentially allowing attackers to gain privileged access. #NetworkManagementService #CommandInjection #AuthenticatedVulnerability #PrivilegedAccess #ArbitraryCommandExecution #SecurityRisk #Exploit #NetworkService #CommandLineInterface

Fix

Command Injection

Weakness Enumeration

Related Identifiers

CVE-2025-23052

Affected Products

Hpe Aruba Networking Aos