There is a vulnerability in the AP Certificate Management Service which could allow a threat actor to execute an unauthenticated RCE attack. Successful exploitation could allow an attacker to execute arbitrary commands on the underlying operating system leading to complete system compromise.
References
Link | Resource |
---|---|
https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw04678en_us&docLocale=en_US | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
12 Aug 2024, 18:23
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-787 | |
First Time |
Arubanetworks
Hp instantos Hp Arubanetworks arubaos |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
CPE | cpe:2.3:o:arubanetworks:arubaos:*:*:*:*:*:*:*:* cpe:2.3:o:hp:instantos:*:*:*:*:*:*:*:* |
|
References | () https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw04678en_us&docLocale=en_US - Vendor Advisory |
06 Aug 2024, 20:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
06 Aug 2024, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-08-06 19:15
Updated : 2024-08-12 18:23
NVD link : CVE-2024-42395
Mitre link : CVE-2024-42395
JSON object : View
Products Affected
arubanetworks
- arubaos
hp
- instantos
CWE
CWE-787
Out-of-bounds Write