CVE-2021-34617 PUBLISHED

Reported by hpe · Published July 19, 2021

A remote cross-site scripting (XSS) vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba Instant 6.4.x: 6.4.4.8-4.2.4.13 and below; Aruba Instant 6.5.x: 6.5.4.13 and below; Aruba Instant 8.3.x: 8.3.0.7 and below; Aruba Instant 8.4.x: 8.4.0.5 and below; Aruba Instant 8.5.x: 8.5.0.0 and below. Aruba has released patches for Aruba Instant that address this security vulnerability.

Affected Products

VendorProductVersions
n/aAruba Instant Access PointsAruba Instant 6.4.x: 6.4.4.8-4.2.4.13 and below, Aruba Instant 6.5.x: 6.5.4.13 and below, Aruba Instant 8.3.x: 8.3.0.7 and below
n/aAruba Instant Access PointsAruba Instant 6.5.x: 6.5.4.13 and below, Aruba Instant 8.3.x: 8.3.0.7 and below, Aruba Instant 8.4.x: 8.4.0.5 and below

Timeline

References

Open in Interactive Console →