Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2023-22788

Multiple authenticated command injection vulnerabilities exist in the Aruba InstantOS and ArubaOS 10 command line interface. Successful exploitation of these vulnerabilities result in the ability to execute arbitrary commands as a privileged user on the underlying operating system.

  • Published: May 8, 2023
  • Updated: May 13, 2023
  • CVE: CVE-2023-22788
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 8.8
  • AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CWEs:

OWASP TOP 10:

Software From Fixed in
arubanetworks / arubaos 10.3.0.0 10.3.1.0.x
hp / instantos 8.4.0.0 8.6.0.0
hp / instantos 8.7.0.0 8.9.0.0.x
hp / instantos 6.4.0.0 6.4.4.8-4.2.4.20.x
hp / instantos 6.5.0.0 6.5.4.23.x
hp / instantos 8.6.0.0 8.6.0.19.x
hp / instantos 8.10.0.0 8.10.0.4.x