Fiche vulnérabilité
CVE-2022-37905 : faille élevée arubanetworks sd-wan (CVSS 8.8)
Description
Vulnerabilities in ArubaOS running on 7xxx series controllers exist that allows an attacker to execute arbitrary code during the boot sequence. Successful exploitation could allow an attacker to achieve permanent modification of the underlying operating system.
En bref
- Sévérité
- Élevée (CVSS 8.8)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 12 déc. 2022
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- arubanetworks sd-wan
- arubanetworks arubaos