CVE-2025-27084 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A vulnerability in the Captive Portal of an AOS-10 GW and AOS-8 Controller/Mobility Conductor could allow a remote attacker to conduct a reflected cross-site sc…
Medium CVSS: 5.4

CVE-2025-27084

A vulnerability in the Captive Portal of an AOS-10 GW and AOS-8 Controller/Mobility Conductor could allow a remote attacker to conduct a reflected cross-site scripting (XSS) attack. Successful exploitation could enable the attacker to execute arbitrary script code in the victim's browser within the context of the affected interface.
Vendor
Arubanetworks
Product
Arubaos
CWE
CWE-79
Yayın Tarihi
2025-04-08 17:15:36
Güncelleme
2025-11-12 20:14:34
Source Identifier
security-alert@hpe.com
KEV Date Added
-

Kategoriler

Referanslar