Vulnerabilities in ArubaOS running on 7xxx series controllers exist that allows an attacker to execute arbitrary code during the boot sequence. Successful exploitation could allow an attacker to achieve permanent modification of the underlying operating system.
References
Link | Resource |
---|---|
https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2022-016.txt | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2022-12-12 05:15
Updated : 2022-12-15 07:19
NVD link : CVE-2022-37905
Mitre link : CVE-2022-37905
JSON object : View
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
Products Affected
arubanetworks
- 7210
- sd-wan
- 7030
- 7024
- 7005
- 7205
- 7240xm
- 7008
- arubaos
- 7220
- 7010
- 7280