PT-2026-20308 · Hewlett Packardaruba Networking · Hpe Aruba Networking 5G Core

Published

2026-02-17

·

Updated

2026-03-02

·

CVE-2026-23597

CVSS v3.1

6.5

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions HPE Aruba Networking 5G Core versions (affected versions not specified)
Description An issue exists in the API error handling of an HPE Aruba Networking 5G Core server API that could allow an unauthenticated remote attacker to obtain sensitive information. Exploitation could allow access to details such as user accounts, roles, and system configuration, as well as insight into internal services and workflows. This could increase the risk of unauthorized access and elevated privileges when combined with other issues.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Weakness Enumeration

Related Identifiers

CVE-2026-23597

Affected Products

Hpe Aruba Networking 5G Core