Aria Operations for Networks contains an Authentication...
Critical severity
Unreviewed
Published
Aug 29, 2023
to the GitHub Advisory Database
•
Updated Jan 17, 2024
Description
Published by the National Vulnerability Database
Aug 29, 2023
Published to the GitHub Advisory Database
Aug 29, 2023
Last updated
Jan 17, 2024
Aria Operations for Networks contains an Authentication Bypass vulnerability due to a lack of unique cryptographic key generation. A malicious actor with network access to Aria Operations for Networks could bypass SSH authentication to gain access to the Aria Operations for Networks CLI.
References