Welcome to our

Cyber Security News Aggregator

.

Cyber Tzar

provide a

cyber security risk management

platform; including automated penetration tests and risk assesments culminating in a "cyber risk score" out of 1,000, just like a credit score.

Pre-auth XXE → HTTP SSRF on ArubaOS 8.13.2 closed as "theoretical / no valid PoC" despite TCP pcap, sshd localhost log, and internal port scan — documenting for community review

published on 2026-06-10 18:54:54 UTC by /u/Pale_Surround_3924
Content:

Pre-auth XXE on ArubaOS 8.13.2 port 32000 (default-xml-api, no auth required).

Evidence: TCP pcap + sshd 127.0.0.1 log + 9 internal ports via SSRF.

Closed as "theoretical / no valid PoC." Full writeup + PoC + pcap on GitHub.

submitted by /u/Pale_Surround_3924
[link] [comments]
Article: Pre-auth XXE → HTTP SSRF on ArubaOS 8.13.2 closed as "theoretical / no valid PoC" despite TCP pcap, sshd localhost log, and internal port scan — documenting for community review - published 1 day ago.

https://www.reddit.com/r/netsec/comments/1u2bc4n/preauth_xxe_http_ssrf_on_arubaos_8132_closed_as/   
Published: 2026 06 10 18:54:54
Received: 2026 06 10 19:04:24
Feed: /r/netsec - Information Security News and Discussion
Source: /r/netsec - Information Security News and Discussion
Category: Cyber Security
Topic: Cyber Security
Views: 2

Custom HTML Block

Click to Open Code Editor