CVE-2008-0150
 
Severity Score
6.8
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Unspecified vulnerability in the LDAP authentication feature in Aruba Mobility Controller 2.3.6.15, 2.5.2.11, 2.5.4.25, 2.5.5.7, 3.1.1.3, and 2.4.8.11-FIPS or earlier allows remote attackers to bypass authentication mechanisms and obtain management or VPN interface access.
Vulnerabilidad no especificada en la característica de autenticación LDAP en Aruba Mobility Controller 2.3.6.15, 2.5.2.11, 2.5.4.25, 2.5.5.7, 3.1.1.3, y 2.4.8.11-FIPS o anteriores permite a atacantes remotos evitar los mecanismos de autenticación y obtener acceso a la interfaz de acceso o gestión del VPN.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2008-01-08 CVE Reserved
- 2008-01-09 CVE Published
- 2024-08-07 CVE Updated
- 2024-11-12 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-287: Improper Authentication
CAPEC
References (5)
URL | Tag | Source |
---|---|---|
http://securityreason.com/securityalert/3529 | Third Party Advisory | |
http://www.arubanetworks.com/support/alerts/aid-122207.asc | X_refsource_confirm | |
http://www.securityfocus.com/archive/1/485831/100/0/threaded | Mailing List | |
http://www.securityfocus.com/bid/27144 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://secunia.com/advisories/28357 | 2018-10-15 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Aruba Networks Search vendor "Aruba Networks" | Aruba Mobility Controllers Search vendor "Aruba Networks" for product "Aruba Mobility Controllers" | <= 2.4.8.11-fips Search vendor "Aruba Networks" for product "Aruba Mobility Controllers" and version " <= 2.4.8.11-fips" | - |
Affected
| ||||||
Aruba Networks Search vendor "Aruba Networks" | Aruba Mobility Controllers Search vendor "Aruba Networks" for product "Aruba Mobility Controllers" | 2.3.6.15 Search vendor "Aruba Networks" for product "Aruba Mobility Controllers" and version "2.3.6.15" | - |
Affected
| ||||||
Aruba Networks Search vendor "Aruba Networks" | Aruba Mobility Controllers Search vendor "Aruba Networks" for product "Aruba Mobility Controllers" | 2.5.2.11 Search vendor "Aruba Networks" for product "Aruba Mobility Controllers" and version "2.5.2.11" | - |
Affected
| ||||||
Aruba Networks Search vendor "Aruba Networks" | Aruba Mobility Controllers Search vendor "Aruba Networks" for product "Aruba Mobility Controllers" | 2.5.4.25 Search vendor "Aruba Networks" for product "Aruba Mobility Controllers" and version "2.5.4.25" | - |
Affected
| ||||||
Aruba Networks Search vendor "Aruba Networks" | Aruba Mobility Controllers Search vendor "Aruba Networks" for product "Aruba Mobility Controllers" | 2.5.5.7 Search vendor "Aruba Networks" for product "Aruba Mobility Controllers" and version "2.5.5.7" | - |
Affected
| ||||||
Aruba Networks Search vendor "Aruba Networks" | Aruba Mobility Controllers Search vendor "Aruba Networks" for product "Aruba Mobility Controllers" | 3.1.1.3 Search vendor "Aruba Networks" for product "Aruba Mobility Controllers" and version "3.1.1.3" | - |
Affected
|