A vulnerability in the web API of HPE Aruba Networking EdgeConnect SD-WAN Gateways could allow an authenticated remote attacker to terminate arbitrary running processes. Successful exploitation could allow an attacker to disrupt system operations, potentially resulting in an unstable system state.
Metrics
Affected Vendors & Products
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 16 Sep 2025 22:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability in the web API of HPE Aruba Networking EdgeConnect SD-WAN Gateways could allow an authenticated remote attacker to terminate arbitrary running processes. Successful exploitation could allow an attacker to disrupt system operations, potentially resulting in an unstable system state. | |
Title | Authenticated Arbitrary Process Termination allows potential System Disruption in ECOS | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: hpe
Published:
Updated: 2025-09-16T22:22:57.383Z
Reserved: 2025-04-16T01:28:25.367Z
Link: CVE-2025-37128

No data.

Status : Received
Published: 2025-09-16T23:15:32.640
Modified: 2025-09-16T23:15:32.640
Link: CVE-2025-37128

No data.

No data.