There is a vulnerability in the AP Certificate Management Service which could allow a threat actor to execute an unauthenticated RCE attack. Successful exploitation could allow an attacker to execute arbitrary commands on the underlying operating system leading to complete system compromise.
Metrics
Affected Vendors & Products
References
History
Mon, 12 Aug 2024 18:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Arubanetworks arubaos
Hp Hp instantos |
|
Weaknesses | CWE-787 | |
CPEs | cpe:2.3:o:arubanetworks:arubaos:*:*:*:*:*:*:*:* cpe:2.3:o:hp:instantos:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Arubanetworks arubaos
Hp Hp instantos |
Thu, 08 Aug 2024 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Arubanetworks
Arubanetworks instant |
|
Weaknesses | CWE-295 | |
CPEs | cpe:2.3:o:arubanetworks:instant:8.10.0.0:*:*:*:*:*:*:* cpe:2.3:o:arubanetworks:instant:8.12.0.0:*:*:*:*:*:*:* |
|
Vendors & Products |
Arubanetworks
Arubanetworks instant |
|
Metrics |
ssvc
|
Tue, 06 Aug 2024 20:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Tue, 06 Aug 2024 19:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Tue, 06 Aug 2024 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | There is a vulnerability in the AP Certificate Management Service which could allow a threat actor to execute an unauthenticated RCE attack. Successful exploitation could allow an attacker to execute arbitrary commands on the underlying operating system leading to complete system compromise. | |
Title | Unauthenticated Stack-Based Buffer Overflow Remote Command Execution (RCE) in the AP Certificate Management Service Accessed by the PAPI Protocol | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: hpe
Published: 2024-08-06T18:56:05.348Z
Updated: 2024-08-08T14:47:07.721Z
Reserved: 2024-07-31T20:37:28.338Z
Link: CVE-2024-42395
Vulnrichment
Updated: 2024-08-08T14:45:57.375Z
NVD
Status : Analyzed
Published: 2024-08-06T19:15:57.017
Modified: 2024-08-12T18:23:57.077
Link: CVE-2024-42395
Redhat
No data.