Command Injection Vulnerabilities in HPE 501 Wireless Client Bridge
CVE-2024-54007

Currently unrated

Key Information:

Vendor

HPE

Vendor
CVE Published:
7 January 2025

What is CVE-2024-54007?

Multiple command injection vulnerabilities have been identified in the web interface of the HPE 501 Wireless Client Bridge. These vulnerabilities allow authenticated attackers to execute arbitrary commands on the underlying operating system with the privileges of a privileged user. Successful exploitation necessitates the attacker possessing administrative authentication credentials for the host system, highlighting the importance of securing authentication mechanisms to prevent unauthorized access and potential exploitation.

References

Timeline

  • Vulnerability published

.