An authentication bypass and disclosure of information vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.18.
References
Link | Resource |
---|---|
https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbgn04877en_us | Vendor Advisory |
Configurations
History
25 Jul 2025, 15:28
Type | Values Removed | Values Added |
---|---|---|
First Time |
Hpe
Hpe autopass License Server |
|
References | () https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbgn04877en_us - Vendor Advisory | |
CPE | cpe:2.3:a:hpe:autopass_license_server:*:*:*:*:*:*:*:* |
18 Jul 2025, 15:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-287 |
17 Jul 2025, 21:15
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
16 Jul 2025, 18:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-16 18:15
Updated : 2025-07-25 15:28
NVD link : CVE-2025-37106
Mitre link : CVE-2025-37106
CVE.ORG link : CVE-2025-37106
JSON object : View
Products Affected
hpe
- autopass_license_server
CWE
CWE-287
Improper Authentication