CVE-2023-35975
8.1
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Exploitability: 2.8 / Impact: 5.2
Source: NVD
Description
An authenticated path traversal vulnerability exists in the ArubaOS command line interface. Successful exploitation of this vulnerability results in the ability to delete arbitrary files in the underlying operating system.
Affected (4)
Products: Arubanetworks: Arubaos
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 10.4.0.0 to 10.4.0.2 |
| Running on/with | Platform Versions |
|---|---|
Arubanetworks Mc Va 10 | All versions |
Arubanetworks Mc Va 1k | All versions |
Arubanetworks Mc Va 250 | All versions |
Arubanetworks Mc Va 50 | All versions |
Arubanetworks Mcr Hw 10k | All versions |
Arubanetworks Mcr Hw 1k | All versions |
Arubanetworks Mcr Hw 5k | All versions |
Arubanetworks Mcr Va 10k | All versions |
Arubanetworks Mcr Va 1k | All versions |
Arubanetworks Mcr Va 50 | All versions |
Arubanetworks Mcr Va 500 | All versions |
Arubanetworks Mcr Va 5k | All versions |
Arubanetworks Sd Wan | All versions |
References (2)
Source: security-alert@hpe.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.