PT-2022-24139 · Aruba · Arubaos

Published

2022-11-03

·

Updated

2023-08-08

·

CVE-2022-37905

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ArubaOS versions on 7xxx series controllers (affected versions not specified)
Description The issue allows an attacker to execute arbitrary code during the boot sequence. Successful exploitation could allow an attacker to achieve permanent modification of the underlying operating system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

CVE-2022-37905

Affected Products

Arubaos