CVE advisoryCRITICAL
CVE-2022-37897
Aruba PAPI Command Injection Vulnerability
Halo Surface Signal: 4 out of 5 — likely to be public-facing.
A command injection vulnerability in the Aruba Networks PAPI protocol allows unauthenticated remote code execution by sending specially crafted network packets. This could enable an attacker to run arbitrary commands with privileged access on affected Aruba devices. Understanding the presence and network reachability o