Due to improper restrictions on XML entities multiple vulnerabilities exist in the command line interface of ArubaOS. A successful exploit could allow an authenticated attacker to retrieve files from the local system or cause the application to consume system resources, resulting in a denial of service condition.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: hpe
Published: 2022-11-03T19:36:47.596Z
Updated: 2024-08-03T10:37:42.093Z
Reserved: 2022-08-08T18:45:22.552Z
Link: CVE-2022-37911
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-12-12T13:15:13.383
Modified: 2024-11-21T07:15:22.033
Link: CVE-2022-37911
Redhat
No data.