Arubanetworks
arubanetworks
578 CVEs • 213 products
Products (213)
Click to collapseToggle
Products (213)
Click to collapse
CVEs (578)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
A remote execution of arbitrary commands vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2. |
1Arubanetworks 6Cx 6200f Firmware Cx 6300 FirmwareCx 6400 Firmware+3 moreNov 21, 2024 Sep 23, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Two memory corruption vulnerabilities in the Aruba CX Switches Series 6200F, 6300, 6400, 8320, 8325, and 8400 have been found. Successful exploitation of these vulnerabilities could result in Local Denial of Service of t...Show more |
1Arubanetworks 6Cx 6200f Firmware Cx 6300 FirmwareCx 6400 Firmware+3 moreNov 21, 2024 Sep 23, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Two memory corruption vulnerabilities in the Aruba CX Switches Series 6200F, 6300, 6400, 8320, 8325, and 8400 have been found. Successful exploitation of these vulnerabilities could result in Local Denial of Service of t...Show more |
1Arubanetworks 1Analytics And Location Engine Nov 21, 2024 Sep 4, 2020 N/A· v4 4.9 MEDIUM· v3 4.0 MEDIUM· v2 A vulnerability exists in the Aruba Analytics and Location Engine (ALE) web management interface 2.1.0.2 and earlier firmware that allows an already authenticated administrative user to arbitrarily modify files as an und...Show more |
1Arubanetworks 62530 Firmware 2540 Firmware2920 Firmware+3 moreNov 21, 2024 Aug 26, 2020 N/A· v4 8.8 HIGH· v3 9.3 HIGH· v2 Aruba Intelligent Edge Switch Series 2540, 2530, 2930F, 2930M, 2920, 5400R, and 3810M with firmware 16.08.* before 16.08.0009, 16.09.* before 16.09.0007, 16.10.* before 16.10.0003 are vulnerable to Remote Unauthorized Ac...Show more |
1Arubanetworks 62530 Firmware 2540 Firmware2920 Firmware+3 moreNov 21, 2024 Aug 26, 2020 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 Aruba Intelligent Edge Switch Series 2540, 2530, 2930F, 2930M, 2920, 5400R, and 3810M with firmware 16.08.* before 16.08.0009, 16.09.* before 16.09.0007, 16.10.* before 16.10.0003 are vulnerable to Cross Site Scripting i...Show more |
1Arubanetworks 1Clearpass Policy Manager Nov 21, 2024 Jun 3, 2020 N/A· v4 7.2 HIGH· v3 9.0 HIGH· v2 The ClearPass Policy Manager WebUI administrative interface has an authenticated command remote execution. When the attacker is already authenticated to the administrative interface, they could then exploit the system, l...Show more |
1Arubanetworks 1Clearpass Policy Manager Nov 21, 2024 Jun 3, 2020 N/A· v4 7.2 HIGH· v3 9.0 HIGH· v2 The ClearPass Policy Manager WebUI administrative interface has an authenticated command remote execution. When the attacker is already authenticated to the administrative interface, they could then exploit the system, l...Show more |
1Arubanetworks 1Clearpass Policy Manager Nov 21, 2024 Jun 3, 2020 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 The ClearPass Policy Manager web interface is affected by a vulnerability that leads to authentication bypass. Upon successful bypass an attacker could then execute an exploit that would allow to remote command execution...Show more |
A vulnerability exists allowing attackers, when present in the same network segment as ClearPass' management interface, to make changes to certain databases in ClearPass by crafting HTTP packets. As a result of this atta...Show more |
A vulnerability was found when an attacker, while communicating with the ClearPass management interface, is able to intercept and change parameters in the HTTP packets resulting in the compromise of some of ClearPass' se...Show more |
A server side injection vulnerability exists which could allow an authenticated administrative user to achieve Remote Code Execution in ClearPass. Resolution: Fixed in 6.7.13, 6.8.4, 6.9.0 and higher. |
ClearPass is vulnerable to Stored Cross Site Scripting by allowing a malicious administrator, or a compromised administrator account, to save malicious scripts within ClearPass that could be executed resulting in a privi...Show more |
An administrative application user of or application user with write access to Aruba Airwave VisualRF is able to obtain code execution on the AMP platform. This is possible due to the ability to overwrite a file on disk...Show more |
There are command injection vulnerabilities present in the AirWave application. Certain input fields controlled by an administrative user are not properly sanitized before being parsed by AirWave. If conditions are met,...Show more |
1Arubanetworks 72530 10/100 Port Firmware 2530 With Gigt Port Firmware2540 Firmware+4 moreNov 21, 2024 Feb 13, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A remotely exploitable information disclosure vulnerability is present in Aruba Intelligent Edge Switch models 5400, 3810, 2920, 2930, 2530 with GigT port, 2530 10/100 port, or 2540. The vulnerability impacts firmware 16...Show more |
1Arubanetworks 3Airwave Aruba InstantArubaosNov 21, 2024 Jan 31, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A vulnerability exists in the Aruba AirWave Management Platform 8.x prior to 8.2 in the management interface of an underlying system component called RabbitMQ, which could let a malicious user obtain sensitive informatio...Show more |
2Arubanetworks Siemens4Airwave Aruba InstantArubaos+1 moreNov 21, 2024 Jan 31, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Multiple vulnerabilities exists in Aruba Instate before 4.1.3.0 and 4.2.3.1 due to insufficient validation of user-supplied input and insufficient checking of parameters, which could allow a malicious user to bypass secu...Show more |
Aruba ClearPass Policy Manager before 6.5.7 and 6.6.x before 6.6.2 allows attackers to obtain database credentials. |
2Arubanetworks Siemens2Instant W1750d FirmwareNov 21, 2024 Oct 30, 2019 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Aruba Instant 4.x prior to 6.4.4.8-4.2.4.12, 6.5.x prior to 6.5.4.11, 8.3.x prior to 8.3.0.6, and 8.4.x prior to 8.4.0.1 allows Command injection. |