PT-2023-31018 · Aruba Networks · Airwave Management Platform

1Njected

·

Published

2023-10-17

·

Updated

2023-10-24

·

CVE-2023-4896

CVSS v3.1

6.8

Medium

VectorAV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions AirWave Management Platform (affected versions not specified)
Description A vulnerability exists which allows an authenticated attacker to access sensitive information on the AirWave Management Platform web-based management interface. Successful exploitation allows the attacker to gain access to some data that could be further exploited to laterally access devices managed and monitored by the AirWave server.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2023-4896

Affected Products

Airwave Management Platform