7.5
CVSSv2

CVE-2014-7299

Published: 08/10/2014 Updated: 08/10/2014
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Unspecified vulnerability in administrative interfaces in ArubaOS 6.3.1.11, 6.3.1.11-FIPS, 6.4.2.1, and 6.4.2.1-FIPS on Aruba controllers allows remote malicious users to bypass authentication, and obtain potentially sensitive information or add guest accounts, via an SSH session.

Vulnerable Product Search on Vulmon Subscribe to Product

arubanetworks arubaos 6.4.2.1

arubanetworks arubaos 6.3.11

Exploits

Multiple vulnerabilities were identified in Aruba AP, IAP and AMP devices The vulnerabilities were discovered during a black box security assessment and therefore the vulnerability list should not be considered exhaustive Several of the high severity vulnerabilities listed in this report are related to the Aruba proprietary PAPI protocol and allo ...