There are buffer overflow vulnerabilities in multiple underlying operating system processes that could lead to unauthenticated remote code execution by sending specially crafted packets via the PAPI protocol. Successful exploitation of these vulnerabilities result in the ability to execute arbitrary code as a privileged user on the underlying operating system.
References
Link | Resource |
---|---|
https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2023-002.txt | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
10 Mar 2023, 19:51
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2023-002.txt - Vendor Advisory | |
CPE | cpe:2.3:o:arubanetworks:arubaos:*:*:*:*:*:*:*:* cpe:2.3:a:arubanetworks:sd-wan:*:*:*:*:*:*:*:* |
|
CWE | CWE-120 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
01 Mar 2023, 13:44
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-03-01 08:15
Updated : 2024-02-04 23:14
NVD link : CVE-2023-22754
Mitre link : CVE-2023-22754
CVE.ORG link : CVE-2023-22754
JSON object : View
Products Affected
arubanetworks
- arubaos
- sd-wan
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')