← Back

CVE-2022-37903

nvd nist
Published: Dec 12, 2022Modified: May 2, 2025

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

A vulnerability exists that allows an authenticated attacker to overwrite an arbitrary file with attacker-controlled content via the web interface. Successful exploitation of this vulnerability could lead to full compromise the underlying host operating system.

Affected (6)

2 products
Arubaos
Sd Wan
Configuration A
6 vulnerable · 10 platform
Vulnerable SoftwareAffected Versions
Arubanetworks
From 6.5.4.0 to 6.5.4.23
From 8.4.0.0 to 8.6.0.18
From 8.7.0.0 to 8.7.1.10
From 8.8.0.0 to 8.9.0.3
Version 10.3.0.0
From 8.7.0.0-2.3.0.0 to 8.7.0.0-2.3.0.7
Running on/withPlatform Versions
Arubanetworks
7005
All versions
Arubanetworks
7008
All versions
Arubanetworks
7010
All versions
Arubanetworks
7024
All versions
Arubanetworks
7030
All versions
Arubanetworks
7205
All versions
Arubanetworks
7210
All versions
Arubanetworks
7220
All versions
Arubanetworks
7240xm
All versions
Arubanetworks
7280
All versions

References (2)

Source: security-alert@hpe.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.