Description

A vulnerability in the web management interface of the AOS-CX OS user authentication service could allow an authenticated remote attacker to hijack an active user session. Successful exploitation may enable the attacker to maintain unauthorized access to the session, potentially leading to the view or modification of sensitive configuration data.

INFO

Published Date :

2025-11-18T18:52:46.501Z

Last Modified :

2026-02-26T16:21:08.333Z

Source :

hpe
AFFECTED PRODUCTS

The following products are affected by CVE-2025-37159 vulnerability.

Vendors Products
Hpe
  • Arubaos-cx
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2025-37159.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact