Hewlett Packard Enterprise ArubaOS(HPE ArubaOS)是美国慧与(Hewlett Packard Enterprise)公司的一个网络无线操作系统。 Hewlett Packard Enterprise ArubaOS存在安全漏洞,该漏洞源于存在任意文件创建漏洞,攻击者利用此漏洞可以允许经过身份验证的远程攻击者创建任意文件,从而导致在底层操作系统上执行远程命令(RCE)。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Hewlett Packard Enterprise (HPE) | HPE Aruba Networking Access Points, Instant AOS-8, and AOS-10 | AOS-10.4.x.x: 10.4.1.4 and below ~ <=10.4.1.4 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-42509 | 9.8 CRITICAL | Unauthenticated Command Injection Vulnerability in the CLI Service Accessed by the PAPI Pr |
| CVE-2024-47460 | 9.0 CRITICAL | Unauthenticated Command Injection Vulnerability in the CLI Service Accessed by the PAPI Pr |
| CVE-2024-47461 | 7.2 HIGH | Authenticated Arbitrary Remote Command Execution (RCE) in Instant AOS-8 and AOS-10 |
| CVE-2024-47462 | 7.2 HIGH | Arbitrary File Creation Vulnerability in Instant AOS-8 and AOS-10 leads to Authenticated R |
| CVE-2024-47464 | 6.8 MEDIUM | Authenticated Path Traversal Vulnerability Leads to a Remote Unauthorized Access to Files |
No comments yet