HPE prevents hard coded passwords in ARUBA equipment could present a major security risk


  • HPE corrected CVE-2025-37103 and CVE-2025-37102
  • The first is a case of hard coded identification for an administration account
  • The latter allows the execution of arbitrary orders as a administrator

HPE has corrected a vulnerability of critical severity in its instant Aruba on the access points that could have allowed threat actors to access the devices as a administrator, to modify the parameters, to deploy malicious software and to wreak havoc as they wish.

Aruba instantly on access points are Wi-Fi devices designed for small businesses. They are announced as easy -to -deposit devices offering fast, secure and reliable wireless connectivity.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top