← Back

CVE-2022-37900

nvd nist
Published: Dec 12, 2022Modified: May 1, 2025

JSON object

Loading...
7.2
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.2 / Impact: 5.9
Source: NVD

Description

Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities results in the ability to execute arbitrary commands as a privileged user on the underlying operating system.

Affected (6)

2 products
Arubaos
Sd Wan
Configuration A
6 vulnerable · 10 platform
Vulnerable SoftwareAffected Versions
Arubanetworks
From 6.5.4.0 to 6.5.4.23
From 8.4.0.0 to 8.6.0.18
From 8.7.0.0 to 8.7.1.10
From 8.8.0.0 to 8.9.0.3
Version 10.3.0.0
From 8.7.0.0-2.3.0.0 to 8.7.0.0-2.3.0.7
Running on/withPlatform Versions
Arubanetworks
7005
All versions
Arubanetworks
7008
All versions
Arubanetworks
7010
All versions
Arubanetworks
7024
All versions
Arubanetworks
7030
All versions
Arubanetworks
7205
All versions
Arubanetworks
7210
All versions
Arubanetworks
7220
All versions
Arubanetworks
7240xm
All versions
Arubanetworks
7280
All versions

References (2)

Source: security-alert@hpe.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.