CVE-2023-30509: Authenticated Remote Path Traversal in Aruba EdgeConnect Enterprise Command Line Interface
Multiple authenticated path traversal vulnerabilities exist in the Aruba EdgeConnect Enterprise command line interface. Successful exploitation of these vulnerabilities result in the ability to read arbitrary files on the underlying operating system, including sensitive system files.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-30509?
CVE-2023-30509 refers to multiple authenticated path traversal vulnerabilities in the Aruba EdgeConnect Enterprise command line interface.
What is the severity of CVE-2023-30509?
CVE-2023-30509 has a severity level of medium, with a severity score of 6.5.
Which software versions are affected by CVE-2023-30509?
CVE-2023-30509 affects Aruba EdgeConnect Enterprise versions 9.0.8.0 to 9.2.3.0 (inclusive).
How can CVE-2023-30509 be exploited?
Exploiting CVE-2023-30509 allows attackers to read arbitrary files on the underlying operating system, including sensitive system files.
Is there a fix available for CVE-2023-30509?
To fix CVE-2023-30509, it is recommended to update Aruba EdgeConnect Enterprise to a version that has the vulnerability patched.