HPE security advisory (AV26-909)
Brief
Serial number: AV26-909 Date: September 10, 2026
As of September 9, 2026, Hewlett Packard Enterprise (HPE) is affected by vulnerabilities in the following products:
- ClearPass Policy Manager (CPPM)
- Prior to or equal to 6.11.14
- Prior to or equal to 6.12.8
- HPE IceWall products
- Multiple versions and models
The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available.
- HPESBNW05130 rev.1 - Multiple Vulnerabilities in HPE Aruba Networking ClearPass Policy Manager (CPPM)
- HPESBMU05142 rev.1 - HPE IceWall products, Remote Bypass of Security Restrictions
- HPESBMU05147 rev.1 - HPE IceWall products, Denial of Service vulnerability
- HPE Security Bulletin Library
HPE security advisory (AV26-909) - Canadian Centre for Cyber Security
