HPE Aruba Networking Edgeconnect SD-WAN
14 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for HPE Aruba Networking Edgeconnect SD-WAN, a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.
HPE Aruba Networking Edgeconnect SD-WAN CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 9 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 14 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- High9
- Medium5
Latest CVEs
The 14 most recently published vulnerabilities affecting HPE Aruba Networking Edgeconnect SD-WAN.
- CVE-2025-37125Broken access control vulnerability in Firewall Configuration Leads to Unauthorized Access to Internal Network Resources7.5
- CVE-2025-37123Authenticated Command Injection leads to Unauthorized Actions in CLI Interface8.8
- CVE-2025-37124Unauthenticated Access Vulnerability allows Transit Traffic Misrouting in SD-WAN Edge Interface8.6
- CVE-2025-37128Authenticated Arbitrary Process Termination allows potential System Disruption in ECOS6.8
- CVE-2025-37129Authenticated Remote Code Execution allows Exploit in Scripts Feature6.7
- CVE-2025-37127Authenticated Replay Attack contains Cryptographic Vulnerability7.2
- CVE-2025-37130Unrestricted Binary allows File Enumeration in Underlying Operating System6.5
- CVE-2025-37126Authenticated Remote Code Execution in HPE Aruba Networking EdgeConnect SD-WAN Gateways Command Line Interface7.2
- CVE-2025-37131Authenticated Arbitrary File Read allows Data Exposure in CLI Interface4.9
- CVE-2024-41136Authenticated Command Injection in HPE Aruba Networking EdgeConnect SD-WAN Command Line Interface6.8
- CVE-2024-41135Authenticated Remote Code Execution in HPE Aruba Networking EdgeConnect SD-WAN Command Line Interface7.2
- CVE-2024-41134Authenticated Remote Code Execution in HPE Aruba Networking EdgeConnect SD-WAN Command Line Interface7.2
- CVE-2024-41133Authenticated Remote Code Execution in HPE Aruba Networking EdgeConnect SD-WAN Command Line Interface7.2
- CVE-2024-33519Authenticated Server-Side prototype pollution Leading to Information Disclosure7.2
Product grouping is registry-driven, with AI assist and human review. How it works