Hewlett Packard Enterprise Aruba Networks Instant是美国慧与科技(Hewlett Packard Enterprise)公司的一个无线网络。提供了唯一一种易于设置的Wi-Fi解决方案。 Aruba Networks Instant存在安全漏洞,该漏洞源于存在命令注入漏洞,攻击者利用此漏洞可以导致以特权用户身份在底层操作系统上执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Hewlett Packard Enterprise (HPE) | HPE Aruba Networking Access Points, Instant AOS-8, and AOS-10 | AOS-10.4.x.x: 10.4.1.4 and below ~ <=10.4.1.4 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-42509 | 9.8 CRITICAL | Unauthenticated Command Injection Vulnerability in the CLI Service Accessed by the PAPI Pr |
| CVE-2024-47461 | 7.2 HIGH | Authenticated Arbitrary Remote Command Execution (RCE) in Instant AOS-8 and AOS-10 |
| CVE-2024-47462 | 7.2 HIGH | Arbitrary File Creation Vulnerability in Instant AOS-8 and AOS-10 leads to Authenticated R |
| CVE-2024-47463 | 7.2 HIGH | Arbitrary File Creation Vulnerability in Instant AOS-8 and AOS-10 leads to Authenticated R |
| CVE-2024-47464 | 6.8 MEDIUM | Authenticated Path Traversal Vulnerability Leads to a Remote Unauthorized Access to Files |
No comments yet