CVE-2025-37110: Sensitive Credential Information stored insecurely in System Database
A vulnerability was discovered in the storage policy for certain sets of sensitive credential information in the HPE Telco Network Function Virtual Orchestrator. Successful Exploitation could lead to unauthorized parties gaining access to sensitive system information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-37110?
The severity of CVE-2025-37110 is classified as critical due to the risk of unauthorized access to sensitive information.
How do I fix CVE-2025-37110?
To fix CVE-2025-37110, apply the latest security patches released by Hewlett Packard Enterprise for the Telco Network Function Virtual Orchestrator.
Who is affected by CVE-2025-37110?
CVE-2025-37110 affects users of the HPE Telco Network Function Virtual Orchestrator.
What type of vulnerability is CVE-2025-37110?
CVE-2025-37110 is a vulnerability related to improper storage policies for sensitive credential information.
What could happen if CVE-2025-37110 is exploited?
Exploitation of CVE-2025-37110 could allow unauthorized parties to gain access to sensitive system information, compromising system integrity.