Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2017-9000

EPSS 1.29% · P80
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2017-9000

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
ArubaOS, all versions prior to 6.3.1.25, 6.4 prior to 6.4.4.16, 6.5.x prior to 6.5.1.9, 6.5.2, 6.5.3 prior to 6.5.3.3, 6.5.4 prior to 6.5.4.2, 8.x prior to 8.1.0.4 FIPS and non-FIPS versions of software are both affected equally is vulnerable to unauthenticated arbitrary file access. An unauthenticated user with network access to an Aruba mobility controller on TCP port 8080 or 8081 may be able to access arbitrary files stored on the mobility controller. Ports 8080 and 8081 are used for captive portal functionality and are listening, by default, on all IP interfaces of the mobility controller, including captive portal interfaces. The attacker could access files which could contain passwords, keys, and other sensitive information that could lead to full system compromise.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Aruba ArubaOS 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Aruba ArubaOS是美国安移通网络(Aruba Networks)公司的一套面向Aruba Mobility-Defined Networks(包括移动控制器和移动接入交换机)的操作系统。 Aruba ArubaOS中存在安全漏洞。攻击者可利用该漏洞访问存储在移动控制器上的任意文件(包含:密码、密钥和其他敏感信息)。以下版本(FIPS和non-FIPS版本)受到影响:ArubaOS 6.3.1.25之前版本,6.4.4.16之前的6.4版本,6.5.1.9之前的6.5.x版本,6.5.2版本,6.
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
Hewlett Packard EnterpriseArubaOS all versions prior to 6.3.1.25 -- 6.4 prior to 6.4.4.16 -- 6.5.x prior to 6.5.1.9 -- 6.5.2 -- 6.5.3 prior to 6.5.3.3 -- 6.5.4 prior to 6.5.4.2 -- 8.x prior to 8.1.0.4 FIPS and non-FIPS versions of software are both affected equally. -

II. Public POCs for CVE-2017-9000

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2017-9000

Please Login to view more intelligence information

Same Patch Batch · Hewlett Packard Enterprise · 2018-08-06 · 38 CVEs total

CVE-2018-7071HPE Network Function Virtualization Director 安全漏洞
CVE-2017-8992HPE CentralView Fraud Risk Management 权限许可和访问控制问题漏洞
CVE-2017-9001Aruba ClearPass 安全漏洞
CVE-2017-9002Aruba ClearPass 跨站脚本漏洞
CVE-2017-9003Aruba ArubaOS 安全漏洞
CVE-2018-7058Aruba ClearPass 安全漏洞
CVE-2018-7060Aruba ClearPass 跨站请求伪造漏洞
CVE-2018-7068HPE CentralView Fraud Risk Management 安全漏洞
CVE-2018-7069HPE CentralView Fraud Risk Management 安全漏洞
CVE-2018-7070HPE CentralView Fraud Risk Management 安全漏洞
CVE-2017-8991HPE CentralView Fraud Risk Management 跨站脚本漏洞
CVE-2018-7072HPE Moonshot Provisioning Manager 安全漏洞
CVE-2018-7073HPE Moonshot Provisioning Manager 安全漏洞
CVE-2018-7074HPE Intelligent Management Center PLAT 安全漏洞
CVE-2018-7075HPE Intelligent Management Center PLAT 跨站脚本漏洞
CVE-2018-7078HPE Integrated Lights-Out 4和Integrated Lights-Out 5 安全漏洞
CVE-2018-7090HPE XP P9000 Command View Advanced Edition Software DevMgr、TSMgr和RepMgr 跨站脚本漏洞
CVE-2018-7091HPE XP P9000 Command View Advanced Edition Software DevMgr、TSMgr和RepMgr 安全漏洞
CVE-2018-7092HPE Intelligent Management Center PLAT 安全漏洞
CVE-2016-4405HPE Business Service Management 安全漏洞

Showing top 20 of 38 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2017-9000

No comments yet


Leave a comment