CVE-2024-31482
Status: ModifiedHigh (7.5)—
An unauthenticated Denial-of-Service (DoS) vulnerability exists in the ANSI escape code service accessed via the PAPI protocol. Successful exploitation of this vulnerability results in the ability to interrupt the normal operation of the affected Access Point.
CVSS
- Version: 3.1
- Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- Base score: 7.5
Exploitation probability (EPSS)
- Probability of exploitation in the next 30 days: 0.55%
- Percentile among all scored CVEs: 44
- Score date: 10/6/2026
EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).
Affected technologies (2)
CWEs
- CWE-78
References
Raw JSON (NVD)
Show
{
"id": "CVE-2024-31482",
"cveTags": [],
"metrics": {
"ssvcV203": [
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"ssvcData": {
"id": "CVE-2024-31482",
"role": "CISA Coordinator",
"options": [
{
"exploitation": "none"
},
{
"automatable": "yes"
},
{
"technicalImpact": "partial"
}
],
"version": "2.0.3",
"timestamp": "2024-05-15T13:43:20.652798Z"
}
}
],
"cvssMetricV31": [
{
"type": "Secondary",
"source": "security-alert@hpe.com",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 5.3,
"attackVector": "NETWORK",
"baseSeverity": "MEDIUM",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
"integrityImpact": "NONE",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "LOW",
"privilegesRequired": "NONE",
"confidentialityImpact": "NONE"
},
"impactScore": 1.4,
"exploitabilityScore": 3.9
},
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 7.5,
"attackVector": "NETWORK",
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
"integrityImpact": "NONE",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "HIGH",
"privilegesRequired": "NONE",
"confidentialityImpact": "NONE"
},
"impactScore": 3.6,
"exploitabilityScore": 3.9
}
]
},
"affected": [
{
"source": "security-alert@hpe.com",
"affectedData": [
{
"vendor": "Hewlett Packard Enterprise (HPE)",
"product": "AOS-8 Instant and AOS-10 AP",
"versions": [
{
"status": "affected",
"version": "10.5.0.0",
"versionType": "semver",
"lessThanOrEqual": "10.5.1.0"
},
{
"status": "affected",
"version": "10.4.0.0",
"versionType": "semver",
"lessThanOrEqual": "10.4.1.0"
},
{
"status": "affected",
"version": "8.11.0.0",
"versionType": "semver",
"lessThanOrEqual": "8.11.2.1"
},
{
"status": "affected",
"version": "8.10.0.0",
"versionType": "semver",
"lessThanOrEqual": "8.10.0.10"
},
{
"status": "affected",
"version": "8.6.0.0",
"versionType": "semver",
"lessThanOrEqual": "8.6.0.23"
}
],
"defaultStatus": "unaffected"
}
]
},
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"affectedData": [
{
"cpes": [
"cpe:2.3:o:arubanetworks:arubaos:10.5.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "arubaos",
"versions": [
{
"status": "affected",
"version": "10.5.0.0",
"versionType": "custom",
"lessThanOrEqual": "10.5.1.0"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:arubaos:10.4.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "arubaos",
"versions": [
{
"status": "affected",
"version": "10.4.0.0",
"versionType": "custom",
"lessThanOrEqual": "10.4.1.0"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:instant:8.10.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "instant",
"versions": [
{
"status": "affected",
"version": "8.10.0.0",
"versionType": "custom",
"lessThanOrEqual": "8.10.0.10"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:instant:8.11.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "instant",
"versions": [
{
"status": "affected",
"version": "8.11.0.0",
"versionType": "custom",
"lessThanOrEqual": "8.11.2.1"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:instant:8.6.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "instant",
"versions": [
{
"status": "affected",
"version": "8.6.0.0",
"versionType": "custom",
"lessThanOrEqual": "8.6.0.23"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:arubaos:10.3.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "arubaos",
"versions": [
{
"status": "affected",
"version": "10.3.0.0",
"lessThan": "10.4.0.0",
"versionType": "custom"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:instant:8.9.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "instant",
"versions": [
{
"status": "affected",
"version": "8.9.0.0",
"lessThan": "8.10.0.0",
"versionType": "custom"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:instant:8.8.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "instant",
"versions": [
{
"status": "affected",
"version": "8.8.0.0",
"lessThan": "8.9.0.0",
"versionType": "custom"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:instant:8.5.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "instant",
"versions": [
{
"status": "affected",
"version": "8.5.0.0",
"lessThan": "8.6.0.0",
"versionType": "custom"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:instant:8.7.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "instant",
"versions": [
{
"status": "affected",
"version": "8.7.0.0",
"lessThan": "8.8.0.0",
"versionType": "custom"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:instant:8.4.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "instant",
"versions": [
{
"status": "affected",
"version": "8.4.0.0",
"lessThan": "8.5.0.0",
"versionType": "custom"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:instant:6.5.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "instant",
"versions": [
{
"status": "affected",
"version": "6.5.0.0",
"lessThan": "6.6.0.0",
"versionType": "custom"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:o:arubanetworks:instant:6.4.0.0:*:*:*:*:*:*:*"
],
"vendor": "arubanetworks",
"product": "instant",
"versions": [
{
"status": "affected",
"version": "6.4.0.0",
"lessThan": "6.5.0.0",
"versionType": "custom"
}
],
"defaultStatus": "unknown"
}
]
}
],
"published": "2024-05-14T23:15:12.843",
"references": [
{
"url": "https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw04647en_us&docLocale=en_US",
"source": "security-alert@hpe.com"
},
{
"url": "https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-006.txt",
"tags": [
"Broken Link",
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Secondary",
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"description": [
{
"lang": "en",
"value": "CWE-78"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "An unauthenticated Denial-of-Service (DoS) vulnerability exists in the ANSI escape code service accessed via the PAPI protocol. Successful exploitation of this vulnerability results in the ability to interrupt the normal operation of the affected Access Point."
},
{
"lang": "es",
"value": "Existe una vulnerabilidad de denegación de servicio (DoS) no autenticada en el servicio de código de escape ANSI al que se accede a través del protocolo PAPI. La explotación exitosa de esta vulnerabilidad da como resultado la capacidad de interrumpir el funcionamiento normal del punto de acceso afectado."
}
],
"lastModified": "2026-06-17T07:28:31.220",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:arubanetworks:arubaos:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C22DF47A-ECDC-4FB3-9361-2CE8972F2403",
"versionEndExcluding": "10.4.1.1",
"versionStartIncluding": "10.3.0.0"
},
{
"criteria": "cpe:2.3:o:arubanetworks:arubaos:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3088AE26-C175-4D22-A550-30B97164D15B",
"versionEndExcluding": "10.5.1.1",
"versionStartIncluding": "10.5.0.0"
},
{
"criteria": "cpe:2.3:o:hp:instantos:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3EF296DF-98BB-4347-A655-F3046220FFB5",
"versionEndExcluding": "8.6.0.24",
"versionStartIncluding": "6.4.0.0"
},
{
"criteria": "cpe:2.3:o:hp:instantos:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "5D7CDA65-CB99-4A70-9E12-B38BC7A69F1A",
"versionEndExcluding": "8.10.0.11",
"versionStartIncluding": "8.7.0.0"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "security-alert@hpe.com"
}