There is a command injection vulnerability in the underlying Central Communications service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access Point management protocol) UDP port (8211). Successful exploitation of this vulnerability results in the ability to execute arbitrary code as a privileged user on the underlying operating system.
Metrics
Affected Vendors & Products
References
History
Thu, 05 Jun 2025 15:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Hp
Hp instantos |
|
CPEs | cpe:2.3:o:arubanetworks:arubaos:*:*:*:*:*:*:*:* cpe:2.3:o:hp:instantos:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Hp
Hp instantos |

Status: PUBLISHED
Assigner: hpe
Published: 2024-05-14T22:27:21.146Z
Updated: 2024-08-02T01:52:57.106Z
Reserved: 2024-04-03T21:21:22.896Z
Link: CVE-2024-31471

Updated: 2024-05-15T13:37:31.412Z

Status : Analyzed
Published: 2024-05-14T23:15:09.753
Modified: 2025-06-05T15:25:40.620
Link: CVE-2024-31471

No data.