Multiple unauthenticated command injection vulnerabilities were discovered in the AOS-CX API interface in Aruba CX 6200F Switch Series, Aruba 6300 Switch Series, Aruba 6400 Switch Series, Aruba 8320 Switch Series, Aruba 8325 Switch Series, Aruba 8400 Switch Series, Aruba CX 8360 Switch Series version(s): AOS-CX 10.06.xxxx: 10.06.0170 and below, AOS-CX 10.07.xxxx: 10.07.0050 and below, AOS-CX 10.08.xxxx: 10.08.1030 and below, AOS-CX 10.09.xxxx: 10.09.0002 and below. Aruba has released upgrades for Aruba AOS-CX devices that address these security vulnerabilities.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Hpe
Subscribe
|
Aruba 8320
Subscribe
Aruba 8325-32-c
Subscribe
Aruba 8325-48y8c
Subscribe
Aruba 8360-12c
Subscribe
Aruba 8360-16y2c
Subscribe
Aruba 8360-24xf2c
Subscribe
Aruba 8360-32y4c
Subscribe
Aruba 8360-48xt4c
Subscribe
Aruba 8400x
Subscribe
Aruba Cx 6200f
Subscribe
Aruba Cx 6300f
Subscribe
Aruba Cx 6300m
Subscribe
Aruba Cx 6405
Subscribe
Aruba Cx 6410
Subscribe
Arubaos-cx
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-28156 | Multiple unauthenticated command injection vulnerabilities were discovered in the AOS-CX API interface in Aruba CX 6200F Switch Series, Aruba 6300 Switch Series, Aruba 6400 Switch Series, Aruba 8320 Switch Series, Aruba 8325 Switch Series, Aruba 8400 Switch Series, Aruba CX 8360 Switch Series version(s): AOS-CX 10.06.xxxx: 10.06.0170 and below, AOS-CX 10.07.xxxx: 10.07.0050 and below, AOS-CX 10.08.xxxx: 10.08.1030 and below, AOS-CX 10.09.xxxx: 10.09.0002 and below. Aruba has released upgrades for Aruba AOS-CX devices that address these security vulnerabilities. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: hpe
Published:
Updated: 2024-08-04T02:59:30.997Z
Reserved: 2021-09-13T00:00:00
Link: CVE-2021-41003
No data.
Status : Modified
Published: 2022-03-02T22:15:08.157
Modified: 2024-11-21T06:25:14.830
Link: CVE-2021-41003
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD