CVE Vulnerabilities

CVE-2022-37909

Published: Dec 12, 2022 | Modified: May 02, 2025
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Aruba has identified certain configurations of ArubaOS that can lead to sensitive information disclosure from the configured ESSIDs. The scenarios in which disclosure of potentially sensitive information can occur are complex, and depend on factors beyond the control of attackers.

Affected Software

NameVendorStart VersionEnd Version
Sd-wanArubanetworks8.7.0.0-2.3.0.0 (including)8.7.0.0-2.3.0.6 (excluding)
ArubaosArubanetworks6.5.4.0 (including)6.5.4.22 (excluding)
ArubaosArubanetworks8.4.0.0 (including)8.6.0.17 (excluding)
ArubaosArubanetworks8.7.0.0 (including)8.7.1.9 (excluding)
ArubaosArubanetworks8.8.0.0 (including)10.3.0.1 (excluding)

References