PT-2024-6567 · Aruba · Arubaos

Erikdejong

·

Published

2024-08-02

·

Updated

2024-09-21

·

CVE-2024-42502

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: ArubaOS (affected versions not specified)
Description: An authenticated command injection issue exists in the ArubaOS command line interface, allowing successful exploitation to result in the ability to inject shell commands on the underlying operating system. This could enable a remote attacker to execute arbitrary commands.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

OS Command Injection

Weakness Enumeration

Related Identifiers

BDU:2024-07711
CVE-2024-42502

Affected Products

Arubaos