A vulnerability exists in the API of Aruba EdgeConnect Enterprise. An unauthenticated attacker can exploit this condition via the web-based management interface to create a denial-of-service condition which prevents the appliance from properly responding to API requests in Aruba EdgeConnect Enterprise Software version(s): ECOS 9.2.1.0 and below; ECOS 9.1.3.0 and below; ECOS 9.0.7.0 and below; ECOS 8.3.7.1 and below;
2022-12-12T13:15:13.503
2024-11-21T07:15:22.983
Modified
CVSSv3.1: 7.5 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | arubanetworks | edgeconnect_enterprise | ≤ 8.3.7.1 | Yes |
Application | arubanetworks | edgeconnect_enterprise | ≤ 9.0.7.0 | Yes |
Application | arubanetworks | edgeconnect_enterprise | ≤ 9.1.3.0 | Yes |
Application | arubanetworks | edgeconnect_enterprise | ≤ 9.2.1.0 | Yes |