VYPR
Unrated severityNVD Advisory· Published Nov 30, 2022· Updated Apr 24, 2025

CVE-2022-43518

CVE-2022-43518

Description

An authenticated path traversal vulnerability exists in the Aruba EdgeConnect Enterprise web interface. Successful exploitation of this vulnerability results in the ability to read arbitrary files on the underlying operating system, including sensitive system files in Aruba EdgeConnect Enterprise Software version(s): ECOS 9.2.1.0 and below; ECOS 9.1.3.0 and below; ECOS 9.0.7.0 and below; ECOS 8.3.7.1 and below.

Affected products

2
  • Range: <=9.2.1.0
  • Hewlett Packard Enterprise (HPE)/Aruba EdgeConnect Enterprise Softwarev5
    Range: ECOS 9.2.1.0 and below; ECOS 9.1.3.0 and below; ECOS 9.0.7.0 and below; ECOS 8.3.7.1 and below;

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.