跳转到帖子

Aruba AOS-10: CVE-2024-31475: Unauthenticated Arbitrary File Deletion in Central Communications Service Accessed by the PAPI Protocol

recommended_posts

发布于
  • Members

Aruba AOS-10: CVE-2024-31475: Unauthenticated Arbitrary File Deletion in Central Communications Service Accessed by the PAPI Protocol

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:N/I:P/A:C)
Published
05/14/2024
Created
01/16/2025
Added
01/14/2025
Modified
02/04/2025

Description

There is an arbitrary file deletion vulnerability in the Central Communications service accessed by PAPI (Aruba's access point management protocol). Successful exploitation of this vulnerability results in the ability to delete arbitrary files on the underlying operating system, which could lead to the ability to interrupt normal operation and impact the integrity of the affected Access Point.

Solution(s)

  • aruba-aos-10-cve-2024-31475

References

  • https://attackerkb.com/topics/cve-2024-31475
  • CVE - 2024-31475
  • https://csaf.arubanetworks.com/2024/hpe_aruba_networking_-_2024-006.json
  • 查看数 696
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。
注意:你的帖子需要版主批准后才能看到。

游客
回帖…