CVE-2024-51771 : HPE ARUBA NETWORKING CLEARPASS POLICY MANAGER UP TO 6.11.9/6.12.2 WEB-BASED MANAGEMENT INTERFACE OS COMMAND INJECTION

Description

A vulnerability in the HPE Aruba Networking ClearPass Policy Manager web-based management interface could allow an authenticated remote threat actor to conduct a remote code execution attack. Successful exploitation could enable the attacker to run arbitrary commands on the underlying operating system.

References

https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw04761en_us&docLocale=en_US

For More Information

CVERecord

Common Vulnerabilityies and Exposures

Contact us to get started

CVE-2024-51771 : HPE ARUBA NETWORKING CLEARPASS POLICY MANAGER UP TO 6.11.9/6.12.2 WEB-BASED MANAGEMENT INTERFACE OS COMMAND INJECTION

CVE-2024-51771 : HPE ARUBA NETWORKING CLEARPASS POLICY MANAGER UP TO 6.11.9/6.12.2 WEB-BASED MANAGEMENT INTERFACE OS COMMAND INJECTION

Description A vulnerability in the HPE Aruba Networking ClearPass Policy Manager web-based management interface could allow an authenticated remote threat

CVE-2024-54000 : MOBSF MOBILE-SECURITY-FRAMEWORK- UP TO 3.9.6 302 REDIRECT SERVER-SIDE REQUEST FORGERY

CVE-2024-54000 : MOBSF MOBILE-SECURITY-FRAMEWORK- UP TO 3.9.6 302 REDIRECT SERVER-SIDE REQUEST FORGERY

Description Mobile Security Framework (MobSF) is a pen-testing, malware analysis and security assessment framework capable of performing static and dynamic

CVE-2024-40691 : IBM COGNOS CONTROLLER 11.0.0/11.0.1 WEB INTERFACE UNRESTRICTED UPLOAD

CVE-2024-40691 : IBM COGNOS CONTROLLER 11.0.0/11.0.1 WEB INTERFACE UNRESTRICTED UPLOAD

Description IBM Cognos Controller 11.0.0 and 11.0.1 could be vulnerable to malicious file upload by not validating the content of