CVE Feed

    Dashboard / CVE / CVE-2021-41000

    CVE-2021-41000

    Multiple authenticated remote code execution vulnerabilities were discovered in the AOS-CX command line interface in Aruba CX 6200F Switch Series, Aruba 6300 Switch Series, Aruba 6400 Switch Series, Aruba 8320 Switch Series, Aruba 8325 Switch Series, Aruba 8400 Switch Series, Aruba CX 8360 Switch Series version(s): AOS-CX 10.06.xxxx: 10.06.0170 and below, AOS-CX 10.07.xxxx: 10.07.0050 and below, AOS-CX 10.08.xxxx: 10.08.1030 and below. Aruba has released upgrades for Aruba AOS-CX devices that address these security vulnerabilities.

    Published:Mar 2, 2022
    Last Modified:Nov 21, 2024
    EPS:Mar 2, 2022
    EPSS Score:0.05496
    CVSS Score:8.8

    Affected Products

    Vendor
    Hpe
    Product
    Aruba 8320
    Vendor
    Hpe
    Product
    Aruba 8325-32-c
    Vendor
    Hpe
    Product
    Aruba 8325-48y8c
    Vendor
    Hpe
    Product
    Aruba 8360-12c
    Vendor
    Hpe
    Product
    Aruba 8360-16y2c
    Vendor
    Hpe
    Product
    Aruba 8360-24xf2c
    Vendor
    Hpe
    Product
    Aruba 8360-32y4c
    Vendor
    Hpe
    Product
    Aruba 8360-48xt4c
    Vendor
    Hpe
    Product
    Aruba 8400x
    Vendor
    Hpe
    Product
    Aruba Cx 6200f
    Vendor
    Hpe
    Product
    Aruba Cx 6300f
    Vendor
    Hpe
    Product
    Aruba Cx 6300m
    Vendor
    Hpe
    Product
    Aruba Cx 6405
    Vendor
    Hpe
    Product
    Aruba Cx 6410
    Vendor
    Hpe
    Product
    Arubaos-cx

    Exploits

    No exploit reference

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High