CVE-2024-33516

MEDIUM

ArubaOS 8.10.0.0-8.10.0.9 - Unauthenticated Denial of Service via PAPI Auth Service

Title source: llm
STIX 2.1

Description

An unauthenticated Denial of Service (DoS) vulnerability exists in the Auth service accessed via the PAPI protocol provided by ArubaOS. Successful exploitation of this vulnerability results in the ability to interrupt the normal operation of the controller.

References (1)

Core 1

Scores

CVSS v3 5.3
EPSS 0.0007
EPSS Percentile 22.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-121
Status published
Products (1)
arubanetworks/arubaos 8.10.0.0 - 8.10.0.10
Published May 01, 2024
Tracked Since Feb 18, 2026