ZeroHour

CVE-2024-42395

CVSS 3.1
9.8 critical
EPSS
<1%p33
Published
()
Modified
Description

There is a vulnerability in the AP Certificate Management Service which could allow a threat actor to execute an unauthenticated RCE attack. Successful exploitation could allow an attacker to execute arbitrary commands on the underlying operating system leading to complete system compromise.

Vendors
arubanetworkshp
Products
arubaos, instantos
Weakness
CWE-787, CWE-295
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.