There are command injection vulnerabilities in the underlying Soft AP Daemon service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access Point management protocol) UDP port (8211). Successful exploitation of these vulnerabilities result in the ability to execute arbitrary code as a privileged user on the underlying operating system.
Metrics
Affected Vendors & Products
References
History
Thu, 05 Jun 2025 15:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Hp
Hp instantos |
|
CPEs | cpe:2.3:o:arubanetworks:arubaos:*:*:*:*:*:*:*:* cpe:2.3:o:hp:instantos:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Hp
Hp instantos |

Status: PUBLISHED
Assigner: hpe
Published: 2024-05-14T22:28:29.845Z
Updated: 2024-08-02T01:52:57.033Z
Reserved: 2024-04-03T21:21:22.897Z
Link: CVE-2024-31472

Updated: 2024-05-15T13:38:10.219Z

Status : Analyzed
Published: 2024-05-14T23:15:10.020
Modified: 2025-06-05T15:25:42.627
Link: CVE-2024-31472

No data.