HPE Aruba Networking product security update advisory
Overview
HPE has released security updates to fix vulnerabilities in Aruba Networking products. Users of affected products are advised to update to the latest version.
Affected Products
CVE-2024-54006, CVE-2024-54007
501 Wireless Client Bridge Version: ~ V2.1.1.0-B0030 (inclusive)
Resolved Vulnerabilities
Multiple Instruction Injection Vulnerability in 501 Wireless Client Bridge (CVE-2024-54006, CVE-2024-54007)
Vulnerability Patches
Vulnerability patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
CVE-2024-54006, CVE-2024-54007
501 Wireless Client Bridge version: V2.1.1.0-B0033 or at least
References
[1] HPESBNW04763 rev.1 – HPE Aruba Networking 501 Wireless Client Bridge Authenticated Remote Command Injection Vulnerabilities
https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw04763en_us&docLocale=en_US