{"api_version":"v1","generated_at":"2026-10-10T07:25:00+00:00","product":{"cve_count":3,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-hewlett-packard-enterprise-hpe-aruba-networking-edgeconnect-sd-wan-orchestrator-3479343f7b4d","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"HPE Aruba Networking EdgeConnect SD-WAN Orchestrator","next_cursor":null,"observations":[{"affected":"EdgeConnect SD-WAN Orchestrator 9.4.x: Orchestrator 9.4.1 (all builds) and below \u2264 <=9.4.1; EdgeConnect SD-WAN Orchestrator 9.3.x: Orchestrator 9.3.2 (all builds) and below \u2264 <=9.3.2; EdgeConnect SD-WAN Orchestrator 9.2.x: Orchestrator 9.2.9 (all builds) and below \u2264 <=9.2.9; EdgeConnect SD-WAN Orchestrator 9.1.x: Orchestrator 9.1.9 (all builds) and below \u2264 <=9.1.9","affected_versions_present":true,"cve_id":"CVE-2024-22444","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-22444","fixed":"Please note that due to the structure of this specific vulnerability HPE Aruba Networking has patched them only in the following software branches and versions of Orchestrator: - Orchestrator 9.3.x: Orchestrator 9.3.1 (all builds) and above - Orchestrator 9.4.x: Orchestrator 9.4.0 (all builds) and above - Orchestrator 9.5.x: Orchestrator 9.5.0 (all builds) and above Older branches and branches not specifically named are not patched. Customers running an Orchestrator release before 9.3.x should refer to these instructions: https://www.arubanetworks.com/techdocs/sdwan-PDFs/docs/advisories/ec_adv_sec_settings_latest.pdf","last_modified":"2024-08-01T22:43:34.992Z","patch_url":"https://csaf.arubanetworking.hpe.com/2024/hpe_aruba_networking_-_hpesbnw04672.json","primary_source":"","published":"2024-07-24T15:17:18.394Z"},{"affected":"EdgeConnect SD-WAN Orchestrator 9.4.x: Orchestrator 9.4.1 (all builds) and below \u2264 <=9.4.1; EdgeConnect SD-WAN Orchestrator 9.3.x: Orchestrator 9.3.2 (all builds) and below \u2264 <=9.3.2; EdgeConnect SD-WAN Orchestrator 9.2.x: Orchestrator 9.2.9 (all builds) and below \u2264 <=9.2.9; EdgeConnect SD-WAN Orchestrator 9.1.x: Orchestrator 9.1.9 (all builds) and below \u2264 <=9.1.9","affected_versions_present":true,"cve_id":"CVE-2024-22443","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-22443","fixed":"Please note that due to the structure of this specific vulnerability HPE Aruba Networking has patched them only in the following software branches and versions of Orchestrator: - Orchestrator 9.1.x: Orchestrator 9.1.10 (all builds) and above - Orchestrator 9.2.x: Orchestrator 9.2.10 (all builds) and above - Orchestrator 9.3.x: Orchestrator 9.3.3 (all builds) and above - Orchestrator 9.4.x: Orchestrator 9.4.2 (all builds) and above - Orchestrator 9.5.x: Orchestrator 9.5.0 (all builds) and above Older branches and branches not specifically named are not patched. Customers running an Orchestrator release before 9.3.x should refer to these instructions: https://www.arubanetworks.com/techdocs/sdwan-PDFs/docs/advisories/ec_adv_sec_settings_latest.pdf","last_modified":"2024-08-01T22:43:34.951Z","patch_url":"https://csaf.arubanetworking.hpe.com/2024/hpe_aruba_networking_-_hpesbnw04672.json","primary_source":"","published":"2024-07-24T15:08:07.150Z"},{"affected":"EdgeConnect SD-WAN Orchestrator 9.4.x: Orchestrator 9.4.1 (all builds) and below \u2264 <=9.4.1; EdgeConnect SD-WAN Orchestrator 9.3.x: Orchestrator 9.3.2 (all builds) and below \u2264 <=9.3.2; EdgeConnect SD-WAN Orchestrator 9.2.x: Orchestrator 9.2.9 (all builds) and below \u2264 <=9.2.9; EdgeConnect SD-WAN Orchestrator 9.1.x: Orchestrator 9.1.9 (all builds) and below \u2264 <=9.1.9","affected_versions_present":true,"cve_id":"CVE-2024-41914","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-41914","fixed":"Please note that due to the structure of this specific vulnerability HPE Aruba Networking has patched them only in the following software branches and versions of Orchestrator: - Orchestrator 9.3.x: Orchestrator 9.3.1 (all builds) and above - Orchestrator 9.4.x: Orchestrator 9.4.0 (all builds) and above - Orchestrator 9.5.x: Orchestrator 9.5.0 (all builds) and above Older branches and branches not specifically named are not patched. Customers running an Orchestrator release before 9.3.x should refer to these instructions: https://www.arubanetworks.com/techdocs/sdwan-PDFs/docs/advisories/ec_adv_sec_settings_latest.pdf","last_modified":"2024-08-12T21:07:17.095Z","patch_url":"https://csaf.arubanetworking.hpe.com/2024/hpe_aruba_networking_-_hpesbnw04672.json","primary_source":"","published":"2024-07-24T14:57:55.556Z"}],"source_generated_at":"2026-10-10T06:21:41.304Z","vendor":"Hewlett Packard Enterprise"}}
