A buffer overflow vulnerability was found in the command line interface of AOS-CX. Successful exploitation of these vulnerabilities could allow an remote low-privileged user to execute arbitrary code as a privileged user on the underlying operating system.
| Vendor | Product | Versions |
|---|---|---|
| hewlett packard enterprise (hpe) | aos-cx | 10.17.0000, 10.16.0000, 10.13.0000, 10.18.0000 |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| aruba | aos-cx | cert_advisory | 90% |
Updated affected versions to include specific patch levels (10.13.1170, 10.16.1050, 10.17.1020, 10.18.0) and corrected severity from HIGH to CRITICAL
Initial creation