Aruba Alert
12769Warning Date
Severity Level
Warning Number
Target Sector
12 October, 2022
● Critical
2022-5330
All
Aruba has released security updates to address several vulnerabilities in the following products:
- Aruba EdgeConnect Enterprise Orchestrator (on-premises)
- Aruba EdgeConnect Enterprise Orchestrator-as-a-Service
- Aruba EdgeConnect Enterprise Orchestrator-SP and
- Aruba EdgeConnect Enterprise Orchestrator Global Enterprise Tenant Orchestrators
- Orchestrator
Attacker could exploit these vulnerabilities by doing the following:
- Bypass authentication
- Execute arbitrary code remotely
The CERT team encourages users to review Aruba security advisory and apply the necessary updates: