An authenticated path traversal vulnerability exists in the ArubaOS command line interface. Successful exploitation of this vulnerability results in the ability to delete arbitrary files in the underlying operating system.
CVE ID: CVE-2023-35975
CVSS Base Severity: MEDIUM
CVSS Base Score: 6.5
Vendor: Hewlett Packard Enterprise (HPE)
Product: Aruba Mobility Conductor (formerly Mobility Master); Aruba Mobility Controllers; WLAN Gateways and SD-WAN Gateways managed by Aruba Central
EPSS Score: 0.08% (probability of being exploited)
EPSS Percentile: 38.0% (scored less or equal to compared to others)
EPSS Date: 2025-02-03 (when was this score calculated)