CVE-2025-37122

Publication date

2025-09-17 19:31:19

Family

hpe

State

PUBLISHED

Description

A vulnerability in the web-based management interface of network access control services could allow an unauthenticated remote attacker to conduct a Reflected Cross-Site Scripting (XSS) attack. Successful exploitation could allow an attacker to execute arbitrary JavaScript code in a victims browser in the context of the affected interface.