Aruba Mobility Controller contains a flaw related to the EAP-TLS Dot1X termination component. This may be exploited by a remote attacker to bypass authentication and gain wireless network access.
Upgrade to version 3.3.3.9, 3.4.3.1, 5.0.2.1, RN3.1.13, 3.3.2.20-FIPS, 3.4.2.3-FIPS or higher, as it has been reported to fix this vulnerability. In addition, Aruba Networks has released a patch for some older versions.