PT-2025-4794 · Hewlett Packard · Hpe Aruba Networking Aos
Published
2025-01-14
·
Updated
2025-01-23
·
CVE-2025-23052
CVSS v3.1
7.2
High
| Vector | AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H |
The network management service is affected by an authenticated command injection issue in its command line interface, which could allow an attacker to execute arbitrary commands as a privileged user on the underlying operating system. Unfortunately, the specific versions of the network management service that are affected are not mentioned. An exploit for this issue may be available, posing a significant security risk and potentially allowing attackers to gain privileged access.
#NetworkManagementService #CommandInjection #AuthenticatedVulnerability #PrivilegedAccess #ArbitraryCommandExecution #SecurityRisk #Exploit #NetworkService #CommandLineInterface
Fix
Command Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Hpe Aruba Networking Aos