Aller au contenu

Fiche vulnérabilité

CVE-2023-22770 : faille élevée Hewlett Packard Enterprise (HPE) Aruba… (CVSS 7.2)

Description

Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities result in the ability to execute arbitrary commands as a privileged user on the underlying operating system.

En bref

Sévérité
Élevée (CVSS 7.2)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
28 févr. 2023
Dernière mise à jour
7 mars 2025

Produits concernés

  • Hewlett Packard Enterprise (HPE) Aruba Mobility Conductor (formerly Mobility Master); Aruba Mobility Controllers; WLAN Gateways and SD-WAN Gateways managed by Aruba Central

Références

Rechercher une autre vulnérabilité dans la base CVE