Input validation error in ArubaOS (AOS) and Aruba Networking 100 Series Cellular Bridge - CVE-2025-37161
Published: November 19, 2025 / Updated: February 6, 2026
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input in the web-based management interface. A remote attacker can pass specially crafted input to the application and perform a denial of service (DoS) attack.
Affected software
Aruba Networking 100 Series Cellular Bridge
How to mitigate CVE-2025-37161
Aruba Networking 100 Series Cellular Bridge - update to 10.7.2.0