HPE Aruba Networking (formerly Aruba Networks) has released security updates to address critical flaws impacting ArubaOS that could result in remote code execution (RCE) on affected systems. A. Nature of the Vulnerabilities CVE-2024-26304 (CVSS score: 9.8) – Unauthenticated Buffer Overflow Vulnerability in the L2/L3 Management Service Accessed via the PAPI Protocol CVE-2024-26305 (CVSS score: 9.8) continue reading : Four Critical Vulnerabilities Expose HPE Aruba Devices to RCE Attacks
