HPE Aruba Networking Mobility Conductors
cpe:2.3:o:hpe:arubaos:*:*:*:*:*:*:*
- <= 10.7.2.1
- <= 10.4.1.9
- <= 8.13.1.0
- <= 8.10.0.20
- ~10.6
- ~10.5
- ~10.3
- ~8.12
- ~8.11
- ~8.9
- ~8.8
- ~8.7
- ~8.6
- ~6.5.4
- ~8.7.0.0-2.3.0
- ~8.6.0.4-2.2.x
A vulnerability allowing unauthenticated remote file deletion has been identified in HPE Aruba Networking's AOS-8 operating system, specifically within the Mobility Conductors, Controllers, and certain Gateways. Successful exploitation could enable a remote malicious actor to delete arbitrary files on the affected system, potentially leading to denial-of-service conditions on the device.
Exploitation of this vulnerability could result in unauthorized deletion of files, with a possibility of causing denial-of-service conditions on the affected device.
Users are advised to upgrade to AOS-8.13.1.1 or AOS-8.10.0.21 and above. For versions with available patches, instructions can be found on the HPE Networking Support Portal.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.