HPE AutoPass Vulnerability Allows Remote Attackers to Bypass Authentication
ID: a62e71b4-87d5-5347-9994-8784b3a85686
STIX ID: report--a62e71b4-87d5-5347-9994-8784b3a85686
Feed Name: GBHackers
Threat Score
HPE disclosed a remote authentication-bypass vulnerability (CVE-2026-23600) in AutoPass License Server that permits unauthenticated network access to protected functionality (CVSS v3.1 score 7.3). HPE advises upgrading to APLS 9.19 or later, applying relevant patches, restricting administrative access (firewall/VPN), and monitoring authentication/access logs for anomalies.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
