Home
HIGH: 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:HDefault status
affected
10.7.0.0 (semver)
affected
10.4.0.0 (semver)
affected
8.13.0.0 (semver)
affected
8.12.0.0 (semver)
affected
8.10.0.0 (semver)
affected
Description
An authenticated command injection vulnerability exists in the CLI binary of an AOS-8 Controller/Mobility Conductor operating system. Successful exploitation could allow an authenticated malicious actor to execute arbitrary commands as a privileged user on the underlying operating system.
Product status
10.7.0.0 (semver)
10.4.0.0 (semver)
8.13.0.0 (semver)
8.12.0.0 (semver)
8.10.0.0 (semver)
Credits
zzcentury from Ubisectech Sirius Team
References
support.hpe.com/...y?docId=hpesbnw04957en_us&docLocale=en_US