First published: Tue Nov 25 2014(Updated: )
The web interface in Aruba Networks AirWave before 7.7.14 and 8.x before 8.0.5 allows remote authenticated users to gain privileges and execute arbitrary commands via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Aruba Networks Airwave | >=7.7.0<7.7.14 | |
Aruba Networks Airwave | >=8.0.0<8.0.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-8368 has a high severity level due to the potential for remote authenticated users to escalate privileges and execute arbitrary commands.
To mitigate CVE-2014-8368, upgrade Aruba Networks AirWave to version 7.7.14 or 8.0.5 or later.
CVE-2014-8368 affects Aruba Networks AirWave versions prior to 7.7.14 and all versions before 8.0.5.
CVE-2014-8368 can be exploited by remote authenticated users with access to the web interface.
CVE-2014-8368 allows attackers to gain elevated privileges and execute arbitrary commands on the affected systems.