HPE Aruba Private 5G Vulnerability Opens Door to Credential Theft Attacks
ID: ba741565-3ee3-596a-9abf-8e61b9d47969
STIX ID: report--ba741565-3ee3-596a-9abf-8e61b9d47969
Feed Name: GBHackers
Threat Score
A disclosed vulnerability (CVE-2026-23818) in HPE Aruba Private 5G Core On-Prem stems from an open redirect in the GUI authentication flow that allows attackers to craft links that redirect authenticated administrators to attacker-controlled spoofed login pages to harvest credentials; the vendor has published a security bulletin and organizations are advised to apply patches, strengthen email/web filtering, and train staff to recognize phishing and unexpected redirections.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
