CVE-2025-37161
BaseFortify
Publication date: 2025-11-18
Last updated on: 2026-02-13
Assigner: Hewlett Packard Enterprise (HPE)
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| arubanetworks | arubaos | to 10.7.2.0 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-400 | The product does not properly control the allocation and maintenance of a limited resource. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability exists in the web-based management interface of certain products and allows an unauthenticated remote attacker to cause a denial of service. By exploiting this flaw, the attacker can crash the system, which then cannot reboot without manual intervention, leading to disruption of network operations.
How can this vulnerability impact me? :
The impact of this vulnerability is a denial of service condition where the affected system crashes and cannot reboot automatically. This disruption can halt network operations and require manual intervention to restore service, potentially causing downtime and operational delays.