Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-30508


Multiple authenticated path traversal vulnerabilities exist in the Aruba EdgeConnect Enterprise command line interface. Successful exploitation of these vulnerabilities result in the ability to read arbitrary files on the underlying operating system, including sensitive system files.


Published

2023-05-16T19:15:09.980

Last Modified

2025-01-22T21:15:09.017

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 4.9 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-22
  • Type: Secondary
    CWE-22

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application arubanetworks edgeconnect_enterprise ≤ 9.0.8.0 Yes
Application arubanetworks edgeconnect_enterprise ≤ 9.1.5.0 Yes
Application arubanetworks edgeconnect_enterprise ≤ 9.2.3.0 Yes

References