CVE-2023-22764: Authenticated Remote Command Execution in the ArubaOS Command Line Interface
Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities result in the ability to execute arbitrary commands as a privileged user on the underlying operating system.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-22764?
The severity of CVE-2023-22764 is high (7.2).
How do I fix CVE-2023-22764?
To fix CVE-2023-22764, update ArubaOS to version 8.6.0.20 or higher.
What is ArubaOS?
ArubaOS is the operating system used in Aruba Networks devices.
What is authenticated command injection vulnerability?
Authenticated command injection vulnerability is a type of security vulnerability where an attacker can execute unauthorized commands with the privileges of a authenticated user.
Where can I find more information about CVE-2023-22764?
You can find more information about CVE-2023-22764 at the following link: [Aruba Networks Security Advisory](https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2023-002.txt)