logo

HPE AutoPass Vulnerability Allows Remote Attackers to Bypass Authentication

ID: a62e71b4-87d5-5347-9994-8784b3a85686

STIX ID: report--a62e71b4-87d5-5347-9994-8784b3a85686

Feed Name: GBHackers

Threat Score
70/100

Date Published: 2026-03-03

Date Updated: 2026-04-22

Author: Divya

...
...

HPE disclosed a remote authentication-bypass vulnerability (CVE-2026-23600) in AutoPass License Server that permits unauthenticated network access to protected functionality (CVSS v3.1 score 7.3). HPE advises upgrading to APLS 9.19 or later, applying relevant patches, restricting administrative access (firewall/VPN), and monitoring authentication/access logs for anomalies.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.