CVE-2023-30506
HIGHAruba EdgeConnect Enterprise < 9.0.8.0 - Authenticated Remote Code Execution via Command Line Interface
Title source: llmDescription
Vulnerabilities exist in the Aruba EdgeConnect Enterprise command line interface that allow remote authenticated users to run arbitrary commands on the underlying host. Successful exploitation of these vulnerabilities result in the ability to execute arbitrary commands as root on the underlying operating system leading to complete system compromise.
References (1)
Core 1
Core References
Scores
CVSS v3
7.2
EPSS
0.0041
EPSS Percentile
61.4%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
total
Details
Status
published
Products (1)
arubanetworks/edgeconnect_enterprise
< 9.0.8.0
Published
May 16, 2023
Tracked Since
Feb 18, 2026