First published: Tue Sep 17 2024(Updated: )
Authenticated command injection vulnerability exists in the ArubaOS command line interface. Successful exploitation of this vulnerability result in the ability to inject shell commands on the underlying operating system.
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
HPE ArubaOS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-42502 is considered high due to the potential for authenticated command injection leading to unauthorized execution of shell commands.
To fix CVE-2024-42502, update your ArubaOS to the latest patched version provided by Aruba.
CVE-2024-42502 is an authenticated command injection vulnerability in the ArubaOS command line interface.
Organizations using affected versions of ArubaOS are vulnerable to CVE-2024-42502 if they allow authenticated users access to the command line interface.
If CVE-2024-42502 is exploited, an attacker can inject and execute malicious shell commands on the underlying operating system.