High severity7.2NVD Advisory· Published Mar 1, 2023· Updated Jun 17, 2026
CVE-2023-22773
CVE-2023-22773
Description
Authenticated path traversal vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities result in the ability to delete arbitrary files in the underlying operating system.
Affected products
4- cpe:2.3:a:arubanetworks:sd-wan:*:*:*:*:*:*:*:*Range: >=8.7.0.0-2.3.0.0,<=8.7.0.0-2.3.0.8
cpe:2.3:o:arubanetworks:arubaos:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:arubanetworks:arubaos:*:*:*:*:*:*:*:*range: >=8.6.0.0,<=8.6.0.19
- (no CPE)
- Hewlett Packard Enterprise (HPE)/Aruba Mobility Conductor (formerly Mobility Master); Aruba Mobility Controllers; WLAN Gateways and SD-WAN Gateways managed by Aruba Centralv5Range: ArubaOS 8.6.x.x: 8.6.0.19 and below
Patches
Vulnerability mechanics
References
1- www.arubanetworks.com/assets/alert/ARUBA-PSA-2023-002.txtnvdVendor Advisory
News mentions
0No linked articles in our index yet.