CVE-2026-44871: Authenticated Command Injection Vulnerabilities in Command Line Interface (CLI) Service Accessed by PAPI Protocol of AOS-8 and AOS-10 Operating Systems
Command injection vulnerabilities exist in the command line interface (CLI) service accessed by the PAPI protocol of AOS-8 and AOS-10 Operating Systems. Successful exploitation of these vulnerabilities could allow an authenticated remote attacker to execute arbitrary commands on the underlying operating system.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-44871?
CVE-2026-44871 has a critical severity rating due to its potential for remote command injection by authenticated users.
How do I fix CVE-2026-44871?
To fix CVE-2026-44871, ensure you update your ArubaOS to the latest version that addresses this vulnerability.
Who is affected by CVE-2026-44871?
CVE-2026-44871 affects users of Aruba ArubaOS versions 8 and 10 who access the command line interface via the PAPI protocol.
What are the implications of CVE-2026-44871?
The implications of CVE-2026-44871 can lead to unauthorized command execution, which may compromise system integrity and confidentiality.
Is CVE-2026-44871 being actively exploited?
As of the latest reports, there is no indication that CVE-2026-44871 is actively being exploited in the wild, but mitigation is strongly advised.