Known Vulnerabilities for products from Hpe

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Hpe".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Additional devices specifications by Hpe can be found at device.report : Hpe

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-73783 json Stack overflow vulnerabilities exist in an API endpoint of AOS-CX. Successful exploitation could allow an authenticated malic... Not Provided 2026-09-01 2026-09-04
CVE-2026-73782 json A format string vulnerability exists in the command line interface of AOS-CX that could lead to unauthenticated remote code e... Not Provided 2026-09-01 2026-09-04
CVE-2026-73781 json A vulnerability in the web-based management interface of AOS-CX could allow an authenticated remote attacker to conduct a sto... Not Provided 2026-09-01 2026-09-04
CVE-2026-73780 json A vulnerability in the web-based management interface of AOS-CX switches exposes some sessions to a lack of Cross-Site Reques... Not Provided 2026-09-01 2026-09-04
CVE-2026-73779 json Vulnerabilities have been identified in the operating system of AOS-CX switches that could potentially allow an unauthenticat... Not Provided 2026-09-01 2026-09-04
CVE-2026-73778 json A vulnerability exists in the Credential Manager component that may allow for unauthorized administrative access. An unauthen... Not Provided 2026-09-01 2026-09-10
CVE-2026-73777 json Vulnerabilities have been identified in the API endpoint of AOS-CX switches that could potentially allow an unauthenticated r... Not Provided 2026-09-01 2026-09-04
CVE-2026-73776 json A signature verification bypass vulnerability exists in the command line interface of AOS-CX. Successful exploitation could a... Not Provided 2026-09-01 2026-09-04
CVE-2026-73775 json Vulnerabilities in the API endpoint of AOS-CX could allow a remote attacker authenticated with low privileges to access sensi... Not Provided 2026-09-01 2026-09-04
CVE-2026-73774 json A buffer overflow vulnerability exists in the underlying operating system of AOS-CX that could lead to unauthenticated disclo... Not Provided 2026-09-01 2026-09-04
CVE-2026-73773 json An unauthenticated Denial-of-Service (DoS) vulnerability exists in the API endpoint of AOS-CX. Successful exploitation of thi... Not Provided 2026-09-01 2026-09-04
CVE-2026-73772 json Buffer overflow vulnerabilities exist in an underlying service of AOS-CX that could lead to an unauthenticated denial-of-serv... Not Provided 2026-09-01 2026-09-04
CVE-2026-73771 json An authentication vulnerability exists in the AOS-CX management interface and API that may allow improper authentication proc... Not Provided 2026-09-01 2026-09-04
CVE-2026-73770 json An authenticated arbitrary file write vulnerability exists in AOS-CX. Successful exploitation could allow an authenticated ma... Not Provided 2026-09-01 2026-09-04
CVE-2026-73768 json A vulnerability exists in the command line interface of AOS-CX that may allow for improper processing of malformed input. Suc... Not Provided 2026-09-01 2026-09-04
CVE-2026-73767 json Authenticated command injection vulnerabilities exist in the command line interface of AOS-CX. Successful exploitation of the... Not Provided 2026-09-01 2026-09-04
CVE-2026-73766 json Command injection vulnerabilities in the API endpoint of AOS-CX could allow an authenticated remote attacker with administrat... Not Provided 2026-09-01 2026-09-04
CVE-2026-73765 json Authenticated path traversal vulnerabilities exist in API endpoints of AOS-CX. Successful exploitation of these vulnerabiliti... Not Provided 2026-09-01 2026-09-04
CVE-2026-73764 json Vulnerabilities have been identified in the operating system of AOS-CX switches that could potentially allow an unauthenticat... Not Provided 2026-09-01 2026-09-04
CVE-2026-73763 json A vulnerability exists in a management component that could allow an unauthenticated adjacent attacker to execute arbitrary c... Not Provided 2026-09-01 2026-09-10

Known software with vulnerabilities from Hpe

Type Vendor Product Version
HardwareHpe3500-
Operating
System
Hpe3500 Firmwarek.16.02.0032
HardwareHpe3500 Yl-
Operating
System
Hpe3500 Yl Firmwarek.16.02.0032
HardwareHpe6200 Yl-
Operating
System
Hpe6200 Yl Firmwarek.15.18.0024
HardwareHpe8200 Zl-
Operating
System
Hpe8200 Zl Firmwarek.15.18.0024
HardwareHpeApollo 2000 Gen10 Plus System-
HardwareHpeApollo 4200 Gen10 Server-
Operating
System
HpeApollo 4200 Gen10 Server Firmware-
HardwareHpeApollo 4200 Gen9 Server-
Operating
System
HpeApollo 4200 Gen9 Server Firmware-
HardwareHpeApollo 4510 Gen10 System-
HardwareHpeApollo 4520 Chassis-
HardwareHpeApollo 6500 Gen10 System-
ApplicationHpeAruba Airwave6.3.1
HardwareHpeCloudline Cl2100 Gen10 Server-
HardwareHpeCloudline Cl2200 Gen10 Server-
HardwareHpeCloudline Cl2600 Gen10 Server-

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report