Security Advisory

CVE-2025-27085

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-04-08 16:29:25
Last updated 2025-04-09 17:45:48
Assigner hpe
State PUBLISHED

Description

Multiple vulnerabilities exist in the web-based management interface of AOS-10 GW and AOS-8 Controller/Mobility Conductor. Successful exploitation of these vulnerabilities could allow an authenticated, remote attacker to download arbitrary files from the filesystem of an affected device.