CVE-2024-25615

An unauthenticated Denial-of-Service (DoS) vulnerability exists in the Spectrum service accessed via the PAPI protocol in ArubaOS 8.x. Successful exploitation of this vulnerability results in the ability to interrupt the normal operation of the affected service.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:arubanetworks:arubaos:*:*:*:*:*:*:*:*
cpe:2.3:o:arubanetworks:arubaos:*:*:*:*:*:*:*:*
cpe:2.3:o:arubanetworks:arubaos:*:*:*:*:*:*:*:*
cpe:2.3:o:arubanetworks:arubaos:*:*:*:*:*:*:*:*

History

28 Jul 2025, 13:02

Type Values Removed Values Added
CPE cpe:2.3:o:arubanetworks:arubaos:*:*:*:*:*:*:*:*
First Time Arubanetworks
Arubanetworks arubaos
References () https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-002.txt - () https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-002.txt - Broken Link

27 Mar 2025, 21:15

Type Values Removed Values Added
CWE CWE-400

21 Nov 2024, 09:01

Type Values Removed Values Added
References () https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-002.txt - () https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-002.txt -

06 Mar 2024, 15:18

Type Values Removed Values Added
Summary
  • (es) Existe una vulnerabilidad de denegación de servicio (DoS) no autenticada en el servicio Spectrum al que se accede a través del protocolo PAPI en ArubaOS 8.x. La explotación exitosa de esta vulnerabilidad da como resultado la capacidad de interrumpir el funcionamiento normal del servicio afectado.

05 Mar 2024, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-05 21:15

Updated : 2025-07-28 13:02


NVD link : CVE-2024-25615

Mitre link : CVE-2024-25615

CVE.ORG link : CVE-2024-25615


JSON object : View

Products Affected

arubanetworks

  • arubaos
CWE
CWE-400

Uncontrolled Resource Consumption