Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3695-47qv-rc3x

Опубликовано: 07 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

Multiple command injection vulnerabilities exist in the web interface of the 501 Wireless Client Bridge which could lead to authenticated remote command execution. Successful exploitation of these vulnerabilities result in the ability of an attacker to execute arbitrary commands as a privileged user on the underlying operating system. Exploitation requires administrative authentication credentials on the host system.

Multiple command injection vulnerabilities exist in the web interface of the 501 Wireless Client Bridge which could lead to authenticated remote command execution. Successful exploitation of these vulnerabilities result in the ability of an attacker to execute arbitrary commands as a privileged user on the underlying operating system. Exploitation requires administrative authentication credentials on the host system.

EPSS

Процентиль: 67%
0.00542
Низкий

7.2 High

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 7.2
nvd
около 1 года назад

Multiple command injection vulnerabilities exist in the web interface of the 501 Wireless Client Bridge which could lead to authenticated remote command execution. Successful exploitation of these vulnerabilities result in the ability of an attacker to execute arbitrary commands as a privileged user on the underlying operating system. Exploitation requires administrative authentication credentials on the host system.

CVSS3: 7.2
fstec
около 1 года назад

Уязвимость веб-интерфейса управления микропрограммного обеспечения беспроводного клиентского моста HPE Aruba Networking 501, позволяющая нарушителю выполнить произвольный код в базовой операционной системе устройства

EPSS

Процентиль: 67%
0.00542
Низкий

7.2 High

CVSS3

Дефекты

CWE-77