Aller au contenu

Fiche vulnérabilité

CVE-2024-42394 : faille critique Hewlett Packard Enterprise (HPE) HPE… (CVSS 9.8)

Description

There are vulnerabilities in the Soft AP Daemon Service which could allow a threat actor to execute an unauthenticated RCE attack. Successful exploitation could allow an attacker to execute arbitrary commands on the underlying operating system leading to complete system compromise.

En bref

Sévérité
Critique (CVSS 9.8)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
6 août 2024
Dernière mise à jour
7 août 2024

Produits concernés

  • Hewlett Packard Enterprise (HPE) HPE Aruba Networking InstantOS and Aruba Access Points running ArubaOS 10

Références

Rechercher une autre vulnérabilité dans la base CVE