Beveiligingsadvies

CVE-2023-35972

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-07-05 14:44:42
Laatst bijgewerkt 2024-12-04 15:41:16
Toegewezen door hpe
CVSS-score 7.2
Status PUBLISHED

Beschrijving

An authenticated remote command injection vulnerability exists in the ArubaOS web-based management interface. Successful exploitation of this vulnerability results in the ability to execute arbitrary commands as a privileged user on the underlying operating system. This allows an attacker to fully compromise the underlying operating system on the device running ArubaOS.