vulnerability

Aruba AOS-10: CVE-2023-45619: Unauthenticated Arbitrary File Deletion in RSSI Service Accessed by the PAPI Protocol

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:N/I:P/A:C)
Published
Nov 14, 2023
Added
Jan 14, 2025
Modified
Feb 4, 2025

Description

There is an arbitrary file deletion vulnerability in the RSSI service accessed by PAPI (Aruba's access point management protocol). Successful exploitation of this vulnerability results in the ability to delete arbitrary files on the underlying operating system, which could lead to the ability to interrupt normal operation and impact the integrity of the access point.

Solution

aruba-aos-10-cve-2023-45619
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.