Tekmono
  • News
  • Guides
  • Lists
  • Reviews
  • Deals
No Result
View All Result
Tekmono
No Result
View All Result
Home News
HPE Warns of Critical Flaw in Aruba Access Points

HPE Warns of Critical Flaw in Aruba Access Points

by Tekmono Editorial Team
21/07/2025
in News
Share on FacebookShare on Twitter

Hewlett-Packard Enterprise (HPE) has issued a warning about a critical security vulnerability in Aruba Instant On Access Points, allowing attackers to bypass authentication and gain administrative access.

The vulnerability, CVE-2025-37103, has a CVSS v3.1 score of 9.8 and affects firmware version 3.2.0.1 and earlier. The flaw involves hardcoded login credentials in the access points, which could be exploited by anyone to gain full administrative control. According to HPE, the presence of such credentials allows “anyone with knowledge of it to bypass normal device authentication.”

Successful exploitation could grant an attacker the power to alter settings, install malware, or capture network traffic. It was reported to HPE by a security researcher from the Ubisectech Sirius Team known as ZZ. HPE advises upgrading to version 3.1.1.0 or later for the AP-510EX access points, and to firmware version 3.2.1.0 or newer for other affected devices to address the risk, since no workarounds exist.

Related Reads

Google opens applications for Gemini App Trusted Tester program

Claude Voice Mode upgrade adds multilingual support and new Push-to-talk feature

Pentagon confirms use of Elon Musk’s Grok AI in missile strikes on Iran

SpaceX acquires AI coding startup Cursor for $60 billion in strategic move

Additionally, HPE highlighted another high-severity vulnerability, CVE-2025-37102, an issue with the Command Line Interface (CLI) of Aruba Instant On access points. This flaw could allow threat actors to inject arbitrary commands, resulting in potential data exfiltration or security breaches. This issue requires being chained with CVE-2025-37103 for full impact.

There are no known reports of these vulnerabilities being exploited. HPE Aruba Networking emphasizes applying the security updates as soon as possible to mitigate potential threats.

ShareTweet

You Might Be Interested

Google opens applications for Gemini App Trusted Tester program
News

Google opens applications for Gemini App Trusted Tester program

17/06/2026
Claude Voice Mode upgrade adds multilingual support and new Push-to-talk feature
News

Claude Voice Mode upgrade adds multilingual support and new Push-to-talk feature

17/06/2026
Pentagon confirms use of Elon Musk’s Grok AI in missile strikes on Iran
News

Pentagon confirms use of Elon Musk’s Grok AI in missile strikes on Iran

17/06/2026
SpaceX acquires AI coding startup Cursor for  billion in strategic move
News

SpaceX acquires AI coding startup Cursor for $60 billion in strategic move

17/06/2026
Please login to join discussion

Recent Posts

  • Google opens applications for Gemini App Trusted Tester program
  • Claude Voice Mode upgrade adds multilingual support and new Push-to-talk feature
  • Pentagon confirms use of Elon Musk’s Grok AI in missile strikes on Iran
  • SpaceX acquires AI coding startup Cursor for $60 billion in strategic move
  • Qualcomm unveils Snapdragon Reality Elite as next-gen XR platform

Recent Comments

No comments to show.
  • News
  • Guides
  • Lists
  • Reviews
  • Deals
Tekmono is a Linkmedya brand. © 2015.

No Result
View All Result
  • News
  • Guides
  • Lists
  • Reviews
  • Deals

This website uses cookies to improve your experience. You can choose to accept or reject them. Visit our Privacy Policy.