CVE-2024-31480
Status: ModifiedHigh (7.5)—
Unauthenticated Denial of Service (DoS) vulnerabilities exist in the CLI service accessed via the PAPI protocol. Successful exploitation of these vulnerabilities result in the ability to interrupt the normal operation of the affected service.
CVSS
- Version: 3.1
- Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- Base score: 7.5
Exploitation probability (EPSS)
- Probability of exploitation in the next 30 days: 0.57%
- Percentile among all scored CVEs: 45
- Score date: 10/6/2026
EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).
Affected technologies (2)
CWEs
- CWE-78
References
Raw JSON (NVD)
Show
{
"id": "CVE-2024-31480",
"cveTags": [],
"metrics": {
"ssvcV203": [
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"ssvcData": {
"id": "CVE-2024-31480",
"role": "CISA Coordinator",
"options": [
{
"exploitation": "none"
},
{
"automatable": "yes"
},
{
"technicalImpact": "partial"
}
],
"version": "2.0.3",
"timestamp": "2024-05-15T13:42:01.200373Z"
}
}
],
"cvssMetricV31": [
{
"type": "Secondary",
"source": "security-alert@hpe.com",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 5.3,
"attackVector": "NETWORK",
"baseSeverity": "MEDIUM",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
"integrityImpact": "NONE",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "LOW",
"privilegesRequired": "NONE",
"confidentialityImpact": "NONE"
},
"impactScore": 1.4,
"exploitabilityScore": 3.9
},
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 7.5,
"attackVector": "NETWORK",
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
"integrityImpact": "NONE",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "HIGH",
"privilegesRequired": "NONE",
"confidentialityImpact": "NONE"
},
"impactScore": 3.6,
"exploitabilityScore": 3.9
}
]
},
"affected": [
{
"source": "security-alert@hpe.com",
"affectedData": [
{
"vendor": "Hewlett Packard Enterprise (HPE)",
"product": "AOS-8 Instant and AOS-10 AP",
"versions": [
{
"status": "affected",
"version": "10.5.0.0",
"versionType": "semver",
"lessThanOrEqual": "10.5.1.0"
},
{
"status": "affected",
"version": "10.4.0.0",
"versionType": "semver",
"lessThanOrEqual": "10.4.1.0"
},
{
"status": "affected",
"version": "8.11.0.0",
"versionType": "semver",
"lessThanOrEqual": "8.11.2.1"
},
{
"status": "affected",
"version": "8.10.0.0",
"versionType": "semver",
"lessThanOrEqual": "8.10.0.10"
},
{
"status": "affected",
"version": "8.6.0.0",
"versionType": "semver",
"lessThanOrEqual": "8.6.0.23"
}
],
"defaultStatus": "unaffected"
}
]
},
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"affectedData": [
{
"cpes": [
"cpe:2.3:o:arubanetworks:arubaos:10.5.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "arubaos",
"versions": [
{
"status": "affected",
"version": "10.5.0.0",
"versionType": "custom",
"lessThanOrEqual": "10.5.1.0"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:arubaos:10.4.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "arubaos",
"versions": [
{
"status": "affected",
"version": "10.4.0.0",
"versionType": "custom",
"lessThanOrEqual": "10.4.1.0"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:instant:8.10.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "instant",
"versions": [
{
"status": "affected",
"version": "8.10.0.0",
"versionType": "custom",
"lessThanOrEqual": "8.10.0.10"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:instant:8.11.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "instant",
"versions": [
{
"status": "affected",
"version": "8.11.0.0",
"versionType": "custom",
"lessThanOrEqual": "8.11.2.1"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:instant:8.6.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "instant",
"versions": [
{
"status": "affected",
"version": "8.6.0.0",
"versionType": "custom",
"lessThanOrEqual": "8.6.0.23"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:arubaos:10.3.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "arubaos",
"versions": [
{
"status": "affected",
"version": "10.3.0.0",
"lessThan": "10.4.0.0",
"versionType": "custom"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:instant:8.9.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "instant",
"versions": [
{
"status": "affected",
"version": "8.9.0.0",
"lessThan": "8.10.0.0",
"versionType": "custom"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:instant:8.8.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "instant",
"versions": [
{
"status": "affected",
"version": "8.8.0.0",
"lessThan": "8.9.0.0",
"versionType": "custom"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:instant:8.5.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "instant",
"versions": [
{
"status": "affected",
"version": "8.5.0.0",
"lessThan": "8.6.0.0",
"versionType": "custom"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:instant:8.7.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "instant",
"versions": [
{
"status": "affected",
"version": "8.7.0.0",
"lessThan": "8.8.0.0",
"versionType": "custom"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:instant:8.4.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "instant",
"versions": [
{
"status": "affected",
"version": "8.4.0.0",
"lessThan": "8.5.0.0",
"versionType": "custom"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:instant:6.5.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "instant",
"versions": [
{
"status": "affected",
"version": "6.5.0.0",
"lessThan": "6.6.0.0",
"versionType": "custom"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:instant:6.4.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "instant",
"versions": [
{
"status": "affected",
"version": "6.4.0.0",
"lessThan": "6.5.0.0",
"versionType": "custom"
}
],
"defaultStatus": "unknown"
}
]
}
],
"published": "2024-05-14T23:15:12.363",
"references": [
{
"url": "https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw04647en_us&docLocale=en_US",
"source": "security-alert@hpe.com"
},
{
"url": "https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-006.txt",
"tags": [
"Broken Link",
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Secondary",
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"description": [
{
"lang": "en",
"value": "CWE-78"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Unauthenticated Denial of Service (DoS) vulnerabilities exist in the CLI service accessed via the PAPI protocol. Successful exploitation of these vulnerabilities result in the ability to interrupt the normal operation of the affected service."
},
{
"lang": "es",
"value": "Existen vulnerabilidades de denegación de servicio (DoS) no autenticadas en el servicio CLI al que se accede a través del protocolo PAPI. La explotación exitosa de estas vulnerabilidades da como resultado la capacidad de interrumpir el funcionamiento normal del servicio afectado."
}
],
"lastModified": "2026-06-17T07:28:30.937",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:arubanetworks:arubaos:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C22DF47A-ECDC-4FB3-9361-2CE8972F2403",
"versionEndExcluding": "10.4.1.1",
"versionStartIncluding": "10.3.0.0"
},
{
"criteria": "cpe:2.3:o:arubanetworks:arubaos:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3088AE26-C175-4D22-A550-30B97164D15B",
"versionEndExcluding": "10.5.1.1",
"versionStartIncluding": "10.5.0.0"
},
{
"criteria": "cpe:2.3:o:hp:instantos:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3EF296DF-98BB-4347-A655-F3046220FFB5",
"versionEndExcluding": "8.6.0.24",
"versionStartIncluding": "6.4.0.0"
},
{
"criteria": "cpe:2.3:o:hp:instantos:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "5D7CDA65-CB99-4A70-9E12-B38BC7A69F1A",
"versionEndExcluding": "8.10.0.11",
"versionStartIncluding": "8.7.0.0"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "security-alert@hpe.com"
}