There is a command injection vulnerability in the underlying Central Communications service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access Point management protocol) UDP port (8211). Successful exploitation of this vulnerability results in the ability to execute arbitrary code as a privileged user on the underlying operating system.
Metrics
Affected Vendors & Products
References
History
Tue, 24 Jun 2025 14:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | There is a command injection vulnerability in the underlying Central Communications service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access Point management protocol) UDP port (8211). Successful exploitation of this vulnerability results in the ability to execute arbitrary code as a privileged user on the underlying operating system. | There is a command injection vulnerability in the underlying Central Communications service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access Point management protocol) UDP port (8211). Successful exploitation of this vulnerability results in the ability to execute arbitrary code as a privileged user on the underlying operating system. |
References |
|
Thu, 05 Jun 2025 15:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Hp
Hp instantos |
|
CPEs | cpe:2.3:o:arubanetworks:arubaos:*:*:*:*:*:*:*:* cpe:2.3:o:hp:instantos:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Hp
Hp instantos |

Status: PUBLISHED
Assigner: hpe
Published:
Updated: 2025-06-24T14:26:02.859Z
Reserved: 2024-04-03T21:21:22.896Z
Link: CVE-2024-31471

Updated: 2024-08-02T01:52:57.106Z

Status : Modified
Published: 2024-05-14T23:15:09.753
Modified: 2025-06-24T15:15:22.450
Link: CVE-2024-31471

No data.