vulnerability

Aruba AOS-10: CVE-2023-22771: Insufficient Session Expiration in ArubaOS Command Line Interface

Severity
8
CVSS
(AV:N/AC:M/Au:M/C:C/I:C/A:C)
Published
Feb 28, 2023
Added
Jan 14, 2025
Modified
Jul 3, 2025

Description

An insufficient session expiration vulnerability exists in the ArubaOS command line interface. Successful exploitation of this vulnerability allows an attacker to keep a session running on an affected device after the removal of impacted account.

Solution

aruba-aos-10-cve-2023-22771
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.