CVE-2024-33516

May 1, 2024, 7:50 p.m.

Awaiting Analysis
CVE has been recently published to the CVE List and has been received by the NVD.

Products

ArubaOS

Source

security-alert@hpe.com

Tags

CVE-2024-33516 details

Published : May 1, 2024, 5:15 p.m.
Last Modified : May 1, 2024, 7:50 p.m.

Description

An unauthenticated Denial of Service (DoS) vulnerability exists in the Auth service accessed via the PAPI protocol provided by ArubaOS. Successful exploitation of this vulnerability results in the ability to interrupt the normal operation of the controller.

CVSS Score

1 2 3 4 5.3 6 7 8 9 10

Weakness

Weakness Name Description

CVSS Data

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

LOW

Base Score

5.3

Exploitability Score

Impact Score

Base Severity

MEDIUM

References

URL Source
https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-004.txt security-alert@hpe.com
This website uses the NVD API, but is not approved or certified by it.