CVE Published: 17/09/2024 |
CVE Updated: 18/09/2024 |
CVE Year: 2024 Source: hpe |
Vendor: Hewlett Packard Enterprise (HPE) |
Product: Aruba OS Status : PUBLISHED
CVE-2024-42502 Description
Authenticated command injection vulnerability exists in the ArubaOS command line interface. Successful exploitation of this vulnerability result in the ability to inject shell commands on the underlying operating system.
Metrics
CVSS Version: 3.1 |
Base Score: 7.2 HIGH Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H