7.5

CVE-2024-33516

Warning

An unauthenticated Denial of Service (DoS) vulnerability exists in the Auth service accessed via the PAPI protocol provided  by ArubaOS. Successful exploitation of this vulnerability results in the ability to interrupt the normal operation of the controller.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users.
Data is provided by the National Vulnerability Database (NVD)
ArubanetworksArubaos Version >= 8.10.0.0 <= 8.10.0.10
ArubanetworksArubaos Version >= 8.11.0.0 <= 8.11.2.1
ArubanetworksArubaos Version >= 10.4.0.0 <= 10.4.1.0
ArubanetworksArubaos Version >= 10.5.0.0 <= 10.5.1.0
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.07% 0.23
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
security-alert@hpe.com 5.3 3.9 1.4
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
CWE-121 Stack-based Buffer Overflow

A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).