Aruba Networks ArubaOS是美国安移通(Aruba Networks)公司的一套面向Aruba Mobility-Defined Networks(包括移动控制器和移动接入交换机)的操作系统。 Aruba Networks ArubaOS 存在安全漏洞,该漏洞源于多个底层操作系统进程中存在缓冲区溢出漏洞,可能会通过 PAPI 协议发送特制数据包导致未经身份验证的远程代码执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Hewlett Packard Enterprise (HPE) | Aruba Mobility Conductor (formerly Mobility Master); Aruba Mobility Controllers; WLAN Gateways and SD-WAN Gateways managed by Aruba Central | ArubaOS 8.10.x.x: 8.10.0.4 and below | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-22747 | 9.8 CRITICAL | Multiple Unauthenticated Command Injections in the PAPI Protocol |
| CVE-2023-22748 | 9.8 CRITICAL | Multiple Unauthenticated Command Injections in the PAPI Protocol |
| CVE-2023-22749 | 9.8 CRITICAL | Multiple Unauthenticated Command Injections in the PAPI Protocol |
| CVE-2023-22750 | 9.8 CRITICAL | Multiple Unauthenticated Command Injections in the PAPI Protocol |
| CVE-2023-22751 | 9.8 CRITICAL | Unauthenticated Stack-Based Buffer Overflow Vulnerabilities in the PAPI Protocol |
| CVE-2023-22752 | 9.8 CRITICAL | Unauthenticated Stack-Based Buffer Overflow Vulnerabilities in the PAPI Protocol |
| CVE-2023-22753 | 8.1 HIGH | Unauthenticated Buffer Overflow Vulnerabilities in ArubaOS Processes |
| CVE-2023-22754 | 8.1 HIGH | Unauthenticated Buffer Overflow Vulnerabilities in ArubaOS Processes |
| CVE-2023-22755 | 8.1 HIGH | Unauthenticated Buffer Overflow Vulnerabilities in ArubaOS Processes |
| CVE-2023-22756 | 8.1 HIGH | Unauthenticated Buffer Overflow Vulnerabilities in ArubaOS Processes |
| CVE-2023-22763 | 7.2 HIGH | Authenticated Remote Command Execution in the ArubaOS Command Line Interface |
| CVE-2023-22758 | 7.2 HIGH | Authenticated Remote Command Execution in ArubaOS Web-based Management Interface |
| CVE-2023-22759 | 7.2 HIGH | Authenticated Remote Command Execution in ArubaOS Web-based Management Interface |
| CVE-2023-22760 | 7.2 HIGH | Authenticated Remote Command Execution in ArubaOS Web-based Management Interface |
| CVE-2023-22761 | 7.2 HIGH | Authenticated Remote Command Execution in ArubaOS Web-based Management Interface |
| CVE-2023-22762 | 7.2 HIGH | Authenticated Remote Command Execution in the ArubaOS Command Line Interface |
| CVE-2023-22764 | 7.2 HIGH | Authenticated Remote Command Execution in the ArubaOS Command Line Interface |
| CVE-2023-22765 | 7.2 HIGH | Authenticated Remote Command Execution in the ArubaOS Command Line Interface |
| CVE-2023-22766 | 7.2 HIGH | Authenticated Remote Command Execution in the ArubaOS Command Line Interface |
| CVE-2023-22767 | 7.2 HIGH | Authenticated Remote Command Execution in the ArubaOS Command Line Interface |
Showing top 20 of 32 CVEs. View all on vendor page → →
No comments yet