Vulnerabilities > CVE-2023-39268 - Out-of-bounds Write vulnerability in HPE Arubaos-Switch

047910
CVSS 9.8 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
hpe
CWE-787
critical

Summary

A memory corruption vulnerability in ArubaOS-Switch could lead to unauthenticated remote code execution by receiving specially crafted packets. Successful exploitation of this vulnerability results in the ability to execute arbitrary code as a privileged user on the underlying operating system.

Vulnerable Configurations

Part Description Count
OS
Hpe
71
Hardware
Arubanetworks
10

Common Weakness Enumeration (CWE)