{"api_version":"v1","generated_at":"2026-10-10T08:35:00+00:00","product":{"cve_count":1,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-hewlett-packard-enterprise-hpe-hpe-aruba-networkign-aos-cx-4833cac30c25","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"HPE Aruba Networkign AOS-CX","next_cursor":null,"observations":[{"affected":"10.16.0000 \u2264 10.16.1000; 10.15.0000 \u2264 10.15.1020; 10.14.0000 \u2264 10.14.1050; 10.13.0000 \u2264 10.13.1090; 10.10.0000 \u2264 10.10.1160","affected_versions_present":true,"cve_id":"CVE-2025-37157","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-37157","fixed":"To address the vulnerabilities described above in the affected software branches, it is recommended to upgrade HPE Aruba Networking AOS-CX to one of the following versions (as applicable): - AOS-CX 10.16.xxxx: AOS-CX 10.16.1006 and above - AOS-CX 10.15.xxxx: AOS-CX 10.15.1030 and above - AOS-CX 10.14.xxxx: AOS-CX 10.14.1060 and above - AOS-CX 10.13.xxxx: AOS-CX 10.13.1101 and above - AOS-CX 10.10.xxxx: AOS-CX 10.10.1170 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at https://networkingsupport.hpe.com/home/ HPE Aruba Networking does not evaluate or patch software branches that have reached their End of Maintenance (EoM) milestone. For more information about HPE Aruba Networking End of Life policy please visit: https://www.hpe.com/psnow/doc/a00143052enw","last_modified":"2026-02-26T16:21:09.691Z","patch_url":"https://networkingsupport.hpe.com/globalsearch#tab=Software","primary_source":"","published":"2025-11-18T18:48:58.009Z"}],"source_generated_at":"2026-10-10T06:21:41.304Z","vendor":"Hewlett Packard Enterprise (HPE)"}}
