CVE-2023-45618

There are arbitrary file deletion vulnerabilities in the AirWave client service accessed by PAPI (Aruba's access point management protocol). Successful exploitation of these vulnerabilities result in the ability to delete arbitrary files on the underlying operating system, which could lead to the ability to interrupt normal operation and impact the integrity of the access point.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:arubanetworks:arubaos:10.5.0.0:*:*:*:*:*:*:*
cpe:2.3:o:hp:instantos:*:*:*:*:*:*:*:*
cpe:2.3:o:arubanetworks:arubaos:*:*:*:*:*:*:*:*
cpe:2.3:o:hp:instantos:*:*:*:*:*:*:*:*
cpe:2.3:o:hp:instantos:*:*:*:*:*:*:*:*

History

21 Nov 2023, 21:13

Type Values Removed Values Added
First Time Arubanetworks
Hp instantos
Hp
Arubanetworks arubaos
References () https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2023-017.txt - () https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2023-017.txt - Mitigation, Vendor Advisory
CWE NVD-CWE-noinfo
CPE cpe:2.3:o:arubanetworks:arubaos:*:*:*:*:*:*:*:*
cpe:2.3:o:hp:instantos:*:*:*:*:*:*:*:*
cpe:2.3:o:arubanetworks:arubaos:10.5.0.0:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.2

14 Nov 2023, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-11-14 23:15

Updated : 2023-11-21 21:13


NVD link : CVE-2023-45618

Mitre link : CVE-2023-45618


JSON object : View

Products Affected

arubanetworks

  • arubaos

hp

  • instantos