HPE AutoPass License Server Remote Authentication Bypass Vulnerability

Vulnerability

A remote authentication bypass vulnerability exists in HPE AutoPass License Server (APLS) versions prior to 9.19. This vulnerability allows for authentication to be bypassed, potentially leading to unauthorized access or actions within the application.

Impact

Exploitation of this vulnerability allows for remote authentication bypass, potentially leading to unauthorized access or actions within the application.

Remediation

Users can upgrade to HPE AutoPass License Server (APLS) version 9.19 or later to address this vulnerability. The updated version can be downloaded from the HPE AutoPass License Server website.

Added: Mar 2, 2026, 3:24 PM
Updated: Mar 2, 2026, 9:59 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
7.4
remediation
0.0
relevance
3.4
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.