logo

HPE Aruba Patches High-Severity DoS and Data Leak Flaws in Instant On Devices

ID: f15537c6-725e-5316-8145-ae6dae57e926

STIX ID: report--f15537c6-725e-5316-8145-ae6dae57e926

Feed Name: securityonline.info

Threat Score
65/100

Date Published: 2026-01-15

Date Updated: 2026-04-23

Author: Ddos

...
...

HPE Networking issued a security advisory for Instant On access points and routers running software version 3.3.1.0 and earlier, addressing multiple high-severity vulnerabilities — including CVE-2025-37166 (CVSS 7.5) which can induce a non-responsive state/DoS and CVE-2025-37165 which can expose router-mode configuration details — and updated devices to firmware 3.3.2.0 (with devices beginning to auto-update the week of December 1); administrators are urged to verify firmware to ensure protection.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.