HPE

Security Scorecard

Score

60F

Total CVEs

36

Patch Rate

17%

6 patched

Avg Response

-

days to patch

Critical Gaps

1

exploitable, no detection

Severity Breakdown

Critical0
High14
Medium22
Low0

Patch Status

Patched6 (17%)
Partial/Workaround9 (25%)
Unpatched21 (58%)

CVEs (36)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-37181EdgeConnect SD-WAN Orchestrator SQL Injection ExploitHigh7.2-Patched
CVE-2025-37183EdgeConnect SD-WAN Orchestrator SQL Injection ExploitHigh7.2-Patched
CVE-2025-37184HPE Orchestrator Admin Token ForgeryMedium6.5-Patched
CVE-2025-37185HPE EdgeConnect SD-WAN Orchestrator XSS VulnerabilityMedium5.5-Patched
CVE-2025-37170HPE AOS-8 Mobility Conductor Command InjectionHigh7.2-Workaround
CVE-2025-37171AOS-8 Root Privilege EscalationHigh7.2-Workaround
CVE-2025-37172HPE AOS-8 Mobility Conductor Command InjectionHigh7.2-Workaround
CVE-2025-37173HPE AOS-10/8 Mobility Conductor Remote Code ExecutionHigh7.2-Workaround
CVE-2025-37168HPE Mobility Conductors AOS-8 File Deletion VulnerabilityHigh8.2-Workaround
CVE-2025-37169HPE Mobility Gateway Stack Overflow ExploitHigh7.2-Patched