Security Advisory

CVE-2022-37911

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-11-03 19:36:47
Last updated 2025-05-02 18:45:02
Assigner hpe
CVSS score 3.8
State PUBLISHED

Description

Due to improper restrictions on XML entities multiple vulnerabilities exist in the command line interface of ArubaOS. A successful exploit could allow an authenticated attacker to retrieve files from the local system or cause the application to consume system resources, resulting in a denial of service condition.