A signature verification bypass vulnerability exists in the command line interface of AOS-CX. Successful exploitation could allow an authenticated malicious actor with administrative privileges to execute arbitrary code on the underlying operating system, when certain pre-conditions outside of the attacker’s control are met.
| Vendor | Product | Versions |
|---|---|---|
| hewlett packard enterprise (hpe) | aos-cx | 10.18.0000, 10.17.0000, 10.16.0000, 10.13.0000, 10.10.0000 |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| aruba | arubaos | cert_advisory | 90% |
Loading…