HPE Aruba Networking fixes four critical RCE flaws in ArubaOS
ID: 56022182-f4d0-5ee1-b920-b2a3869d50be
STIX ID: report--56022182-f4d0-5ee1-b920-b2a3869d50be
Feed Name: Bleeping Computer
HPE Aruba Networking released an April 2024 advisory disclosing ten vulnerabilities in ArubaOS, including four critical unauthenticated RCE buffer-overflow bugs exploitable via the PAPI UDP port that affect Mobility Conductors, Controllers, WLAN and SD‑WAN gateways across multiple ArubaOS versions; vendor-provided mitigations include enabling Enhanced PAPI Security and upgrading to specified patched ArubaOS releases, and HPE reports no known active exploitation or public PoCs at this time.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
