PT-2022-24138 · Aruba · Arubaos

Published

2022-11-03

·

Updated

2023-08-08

·

CVE-2022-37904

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ArubaOS versions on 7xxx series controllers (affected versions not specified)
Description The issue allows an attacker to execute arbitrary code during the boot sequence, potentially leading to permanent modification of the underlying operating system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2022-37904

Affected Products

Arubaos