
Critical Flaw In HPE Telco Service Activator Allows Unauthorized Access, Putting Telecom Networks At Risk
Hewlett Packard Enterprise (HPE) has disclosed a critical vulnerability in its Telco Service Activator software that exposes telecom networks to unauthorized access. Tracked as CVE-2025-12543, the flaw stems from improper input validation in the underlying Undertow HTTP server core. Attackers can exploit this by crafting malicious HTTP requests with tampered Host headers to bypass remote […] The post Critical Flaw In HPE Telco Service Activator Allows Unauthorized Access, Putting Telecom Networks At Risk appeared first on Cyber Security News.