Cisco IoT wireless access points hit by severe command injection flaw

Cisco IoT wireless access points hit by severe command injection flaw

In a 2021 blog about the technology, Fluidmesh Network’s co-founder and former CEO Umberto Malesci gave several examples of how the technology was being used, including use cases that make possible a 1,000-device IP camera network on moving… Article Source https://www.networkworld.com/article/3600993/cisco-iot-wireless-access-points-hit-by-severe-command-injection-flaw.html

HPE warns of critical RCE flaws in Aruba Networking access points

HPE warns of critical RCE flaws in Aruba Networking access points

Hewlett Packard Enterprise (HPE) released updates for Instant AOS-8 and AOS-10 software to address two critical vulnerabilities in Aruba Networking Access Points. The two security issues could allow a remote attacker to perform… Article Source https://www.bleepingcomputer.com/news/security/hpe-warns-of-critical-rce-flaws-in-aruba-networking-access-points/

HPE Aruba plugs code-smuggling loopholes in access points

HPE Aruba plugs code-smuggling loopholes in access points

HPE Aruba warns of critical security vulnerabilities affecting access points. Attackers from the network can infiltrate and execute arbitrary code without prior authentication. Updated software is intended to rectify the… Article Source https://www.heise.de/en/news/HPE-Aruba-plugs-code-smuggling-loopholes-in-access-points-10005593.html

Critical Vulnerabilities in Cisco URWB and HPE Aruba Access Points (CVE-2024-20418, CVE-2024-42509) – SOCRadar® Cyber Intelligence Inc.

Critical Vulnerabilities in Cisco URWB and HPE Aruba Access Points (CVE-2024-20418, CVE-2024-42509) – SOCRadar® Cyber Intelligence Inc.

In recent security updates, Cisco has addressed a maximum severity vulnerability affecting Unified Industrial Wireless Software for Cisco URWB (Ultra-Reliable Wireless Backhaul) access points—network devices widely used… Article Source https://socradar.io/critical-vulnerabilities-in-cisco-urwb-and-hpe-aruba-access-points-cve-2024-20418-cve-2024-42509/

Critical vulnerability in Cisco industrial wireless access points fixed (CVE-2024-20418) – Help Net Security

Critical vulnerability in Cisco industrial wireless access points fixed (CVE-2024-20418) – Help Net Security

Cisco has fixed a critical command injection vulnerability (CVE-2024-20418) affecting its Ultra-Reliable Wireless Backhaul (URWB) Access Points that can be exploited via a HTTP requests and allows complete compromise of the devices. Article Source https://www.helpnetsecurity.com/2024/11/07/cve-2024-20418/

Multiple Vulnerabilities in HPE Aruba Access Points Let Attackers Execute Remote Code

Multiple Vulnerabilities in HPE Aruba Access Points Let Attackers Execute Remote Code

Multiple critical vulnerabilities have been identified in HPE Aruba Access Points, potentially allowing attackers to execute remote code and compromise systems. These vulnerabilities affect both Instant AOS-8 and… Article Source https://cybersecuritynews.com/multiple-vulnerabilities-in-hpe-aruba-access-points/

Cisco bug lets hackers run commands as root on UWRB access points

Cisco bug lets hackers run commands as root on UWRB access points

Cisco has fixed a maximum severity vulnerability that allows attackers to run commands with root privileges on vulnerable Ultra-Reliable Wireless Backhaul (URWB) access points that provide connectivity for industrial wireless… Article Source https://www.bleepingcomputer.com/news/security/cisco-bug-lets-hackers-run-commands-as-root-on-uwrb-access-points/