CVE-2025-27084
A vulnerability in the Captive Portal of an AOS-10 GW and AOS-8 Controller/Mobility Conductor could allow a remote attacker to conduct a reflected cross-site scripting (XSS) attack. Successful exploitation could enable the attacker to execute arbitrary script code in the victim's browser within the context of the affected interface.
Vendor
Product
CWE
Yayın Tarihi
2025-04-08 17:15:36
Güncelleme
2025-11-12 20:14:34
Source Identifier
security-alert@hpe.com
KEV Date Added
-