Vulnerability Details CVE-2023-35972
An authenticated remote command injection vulnerability exists in the ArubaOS web-based management interface. Successful exploitation of this vulnerability results in the ability to execute arbitrary commands as a privileged user on the underlying operating system. This allows an attacker to fully compromise the underlying operating system on the device running ArubaOS.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 50.7%
CVSS Severity
CVSS v3 Score 7.2
Products affected by CVE-2023-35972
-
cpe:2.3:a:arubanetworks:mc-va-10:-
-
cpe:2.3:a:arubanetworks:mc-va-1k:-
-
cpe:2.3:a:arubanetworks:mc-va-250:-
-
cpe:2.3:a:arubanetworks:mc-va-50:-
-
cpe:2.3:a:arubanetworks:mcr-va-10k:-
-
cpe:2.3:a:arubanetworks:mcr-va-1k:-
-
cpe:2.3:a:arubanetworks:mcr-va-500:-
-
cpe:2.3:a:arubanetworks:mcr-va-50:-
-
cpe:2.3:a:arubanetworks:mcr-va-5k:-
-
cpe:2.3:a:arubanetworks:sd-wan:-
-
cpe:2.3:h:arubanetworks:mcr-hw-10k:-
-
cpe:2.3:h:arubanetworks:mcr-hw-1k:-
-
cpe:2.3:h:arubanetworks:mcr-hw-5k:-
-
cpe:2.3:o:arubanetworks:arubaos:10.4.0.0
-
cpe:2.3:o:arubanetworks:arubaos:10.4.0.1
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.0
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.1
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.10
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.11
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.12
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.13
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.14
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.15
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.16
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.17
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.18
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.19
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.2
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.20
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.3
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.4
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.5
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.6
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.7
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.8
-
cpe:2.3:o:arubanetworks:arubaos:6.5.4.9
-
cpe:2.3:o:arubanetworks:arubaos:8.0.0.0
-
cpe:2.3:o:arubanetworks:arubaos:8.0.1.0
-
cpe:2.3:o:arubanetworks:arubaos:8.0.1.1
-
cpe:2.3:o:arubanetworks:arubaos:8.1.0.0
-
cpe:2.3:o:arubanetworks:arubaos:8.1.0.4
-
cpe:2.3:o:arubanetworks:arubaos:8.10.0.0
-
cpe:2.3:o:arubanetworks:arubaos:8.11.0.0
-
cpe:2.3:o:arubanetworks:arubaos:8.2.0.0
-
cpe:2.3:o:arubanetworks:arubaos:8.2.0.1
-
cpe:2.3:o:arubanetworks:arubaos:8.2.0.2
-
cpe:2.3:o:arubanetworks:arubaos:8.2.1.0
-
cpe:2.3:o:arubanetworks:arubaos:8.2.1.1
-
cpe:2.3:o:arubanetworks:arubaos:8.2.2.0
-
cpe:2.3:o:arubanetworks:arubaos:8.2.2.1
-
cpe:2.3:o:arubanetworks:arubaos:8.2.2.10
-
cpe:2.3:o:arubanetworks:arubaos:8.2.2.2
-
cpe:2.3:o:arubanetworks:arubaos:8.2.2.3
-
cpe:2.3:o:arubanetworks:arubaos:8.2.2.4
-
cpe:2.3:o:arubanetworks:arubaos:8.2.2.5
-
cpe:2.3:o:arubanetworks:arubaos:8.2.2.6
-
cpe:2.3:o:arubanetworks:arubaos:8.2.2.7
-
cpe:2.3:o:arubanetworks:arubaos:8.2.2.8
-
cpe:2.3:o:arubanetworks:arubaos:8.2.2.9
-
cpe:2.3:o:arubanetworks:arubaos:8.3.0.0
-
cpe:2.3:o:arubanetworks:arubaos:8.3.0.1
-
cpe:2.3:o:arubanetworks:arubaos:8.3.0.10
-
cpe:2.3:o:arubanetworks:arubaos:8.3.0.11
-
cpe:2.3:o:arubanetworks:arubaos:8.3.0.12
-
cpe:2.3:o:arubanetworks:arubaos:8.3.0.13
-
cpe:2.3:o:arubanetworks:arubaos:8.3.0.14
-
cpe:2.3:o:arubanetworks:arubaos:8.3.0.15
-
cpe:2.3:o:arubanetworks:arubaos:8.3.0.16
-
cpe:2.3:o:arubanetworks:arubaos:8.3.0.2
-
cpe:2.3:o:arubanetworks:arubaos:8.3.0.3
-
cpe:2.3:o:arubanetworks:arubaos:8.3.0.4
-
cpe:2.3:o:arubanetworks:arubaos:8.3.0.5
-
cpe:2.3:o:arubanetworks:arubaos:8.3.0.6
-
cpe:2.3:o:arubanetworks:arubaos:8.3.0.7
-
cpe:2.3:o:arubanetworks:arubaos:8.3.0.8
-
cpe:2.3:o:arubanetworks:arubaos:8.3.0.9
-
cpe:2.3:o:arubanetworks:arubaos:8.4.0.0
-
cpe:2.3:o:arubanetworks:arubaos:8.4.0.1
-
cpe:2.3:o:arubanetworks:arubaos:8.4.0.2
-
cpe:2.3:o:arubanetworks:arubaos:8.4.0.3
-
cpe:2.3:o:arubanetworks:arubaos:8.4.0.4
-
cpe:2.3:o:arubanetworks:arubaos:8.5.0.0
-
cpe:2.3:o:arubanetworks:arubaos:8.5.0.1
-
cpe:2.3:o:arubanetworks:arubaos:8.5.0.10
-
cpe:2.3:o:arubanetworks:arubaos:8.5.0.11
-
cpe:2.3:o:arubanetworks:arubaos:8.5.0.12
-
cpe:2.3:o:arubanetworks:arubaos:8.5.0.13
-
cpe:2.3:o:arubanetworks:arubaos:8.5.0.2
-
cpe:2.3:o:arubanetworks:arubaos:8.6.0.0
-
cpe:2.3:o:arubanetworks:arubaos:8.6.0.11
-
cpe:2.3:o:arubanetworks:arubaos:8.6.0.5
-
cpe:2.3:o:arubanetworks:arubaos:8.6.0.6
-
cpe:2.3:o:arubanetworks:arubaos:8.6.0.7
-
cpe:2.3:o:arubanetworks:arubaos:8.6.0.8
-
cpe:2.3:o:arubanetworks:arubaos:8.6.0.9
-
cpe:2.3:o:arubanetworks:arubaos:8.7.0.0
-
cpe:2.3:o:arubanetworks:arubaos:8.7.1.0
-
cpe:2.3:o:arubanetworks:arubaos:8.7.1.1
-
cpe:2.3:o:arubanetworks:arubaos:8.7.1.2
-
cpe:2.3:o:arubanetworks:arubaos:8.7.1.3
-
cpe:2.3:o:arubanetworks:arubaos:8.7.1.4
-
cpe:2.3:o:arubanetworks:arubaos:8.8.0.0
-
cpe:2.3:o:arubanetworks:arubaos:8.8.0.1