A vulnerability in the command line interface of affected devices could allow an authenticated remote attacker to conduct a command injection attack. Successful exploitation could allow an attacker to execute arbitrary commands on the underlying operating system.
Metrics
Affected Vendors & Products
References
History
Thu, 20 Nov 2025 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hpe
Hpe aruba Networking 100 Series Cellular Bridge |
|
| Vendors & Products |
Hpe
Hpe aruba Networking 100 Series Cellular Bridge |
Wed, 19 Nov 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-77 | |
| Metrics |
ssvc
|
Tue, 18 Nov 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability in the command line interface of affected devices could allow an authenticated remote attacker to conduct a command injection attack. Successful exploitation could allow an attacker to execute arbitrary commands on the underlying operating system. | |
| Title | Authenticated Command Injection Vulnerability Leading to Arbitrary Remote Command Execution | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: hpe
Published: 2025-11-18T19:23:20.504Z
Updated: 2025-11-19T14:39:46.998Z
Reserved: 2025-04-16T01:28:25.375Z
Link: CVE-2025-37162
Updated: 2025-11-19T14:39:37.371Z
Status : Awaiting Analysis
Published: 2025-11-18T20:15:46.723
Modified: 2025-11-19T19:14:59.327
Link: CVE-2025-37162
No data.