Vulnerability index

Browse CVEs

523 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Sd Wan CRITICAL 9.8
CVE-2022-37897

There is a command injection vulnerability that could lead to unauthenticated remote code execution by sending specially crafted packets destined to …

Fix: 6.5.4.22 / 8.6.0.17+
Fix from $2,300 2022-12-12
Sd Wan HIGH 8.8
CVE-2022-37903

A vulnerability exists that allows an authenticated attacker to overwrite an arbitrary file with attacker-controlled content via the web interface. S…

Fix: 6.5.4.23 / 8.6.0.18+
Fix from $1,950 2022-12-12
Sd Wan HIGH 8.8
CVE-2022-37904

Vulnerabilities in ArubaOS running on 7xxx series controllers exist that allows an attacker to execute arbitrary code during the boot sequence. Succe…

Fix: 6.5.4.22 / 8.6.0.17+
Fix from $1,950 2022-12-12
Sd Wan HIGH 8.8
CVE-2022-37905

Vulnerabilities in ArubaOS running on 7xxx series controllers exist that allows an attacker to execute arbitrary code during the boot sequence. Succe…

Fix: 6.5.4.22 / 8.6.0.17+
Fix from $1,950 2022-12-12
Sd Wan HIGH 7.2
CVE-2022-37898

Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities results…

Fix: 6.5.4.23 / 8.6.0.18+
Fix from $1,950 2022-12-12
Sd Wan HIGH 7.2
CVE-2022-37899

Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities results…

Fix: 6.5.4.23 / 8.6.0.18+
Fix from $1,950 2022-12-12
Sd Wan HIGH 7.2
CVE-2022-37900

Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities results…

Fix: 6.5.4.23 / 8.6.0.18+
Fix from $1,950 2022-12-12
Sd Wan HIGH 7.2
CVE-2022-37901

Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities results…

Fix: 6.5.4.23 / 8.6.0.18+
Fix from $1,950 2022-12-12
Sd Wan HIGH 7.2
CVE-2022-37902

Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities results…

Fix: 6.5.4.23 / 8.6.0.18+
Fix from $1,950 2022-12-12
Airwave HIGH 8.1
CVE-2022-37916

Vulnerabilities in the AirWave Management Platform web-based management interface exist which expose some URLs to a lack of proper access controls. T…

Fix: after 8.2.15.0
Fix from $1,950 2022-12-08
Airwave HIGH 8.1
CVE-2022-37917

Vulnerabilities in the AirWave Management Platform web-based management interface exist which expose some URLs to a lack of proper access controls. T…

Fix: after 8.2.15.0
Fix from $1,950 2022-12-08
Airwave HIGH 8.1
CVE-2022-37918

Vulnerabilities in the AirWave Management Platform web-based management interface exist which expose some URLs to a lack of proper access controls. T…

Fix: after 8.2.15.0
Fix from $1,950 2022-12-08
Aruba Edgeconnect Enterprise Orchestrator CRITICAL 9.8
CVE-2022-37913

Vulnerabilities in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow an unauthenticated remote attacker to …

Fix: 8.10.23.40009 / 9.0.7.40108+
Fix from $2,300 2022-10-28
Aruba Edgeconnect Enterprise Orchestrator CRITICAL 9.8
CVE-2022-37914

Vulnerabilities in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow an unauthenticated remote attacker to …

Fix: 8.10.23.40009 / 9.0.7.40108+
Fix from $2,300 2022-10-28
Aruba Edgeconnect Enterprise Orchestrator CRITICAL 9.8
CVE-2022-37915

A vulnerability in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow an unauthenticated remote attacker to …

Fix: 9.1.3.40197+
Fix from $2,300 2022-10-28
Arubaos MEDIUM 6.1
CVE-2022-37896

A vulnerability in the Aruba InstantOS and ArubaOS 10 web management interface could allow a remote attacker to conduct a reflected cross-site script…

Fix: 6.4.4.8-4.2.4.21 / 6.5.4.24+
Fix from $1,600 2022-10-07
Arubaos HIGH 7.8
CVE-2022-37893

An authenticated command injection vulnerability exists in the Aruba InstantOS and ArubaOS 10 command line interface. Successful exploitation of this…

Fix: 6.4.4.8-4.2.4.21 / 6.5.4.24+
Fix from $1,950 2022-10-07
Arubaos MEDIUM 6.5
CVE-2022-37894

An unauthenticated Denial of Service (DoS) vulnerability exists in the handling of certain SSID strings by Aruba InstantOS and ArubaOS 10. Successful…

Fix: 6.4.4.8-4.2.4.21 / 6.5.4.24+
Fix from $1,600 2022-10-07
Arubaos CRITICAL 9.8
CVE-2022-37885

There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution by sending special…

Fix: 6.4.4.8-4.2.4.21 / 6.5.4.24+
Fix from $2,300 2022-10-07
Arubaos CRITICAL 9.8
CVE-2022-37886

There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution by sending special…

Fix: 6.4.4.8-4.2.4.21 / 6.5.4.24+
Fix from $2,300 2022-10-07
Arubaos CRITICAL 9.8
CVE-2022-37887

There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution by sending special…

Fix: 6.4.4.8-4.2.4.21 / 6.5.4.24+
Fix from $2,300 2022-10-07
Arubaos CRITICAL 9.8
CVE-2022-37889

There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution by sending special…

Fix: 6.4.4.8-4.2.4.21 / 6.5.4.24+
Fix from $2,300 2022-10-07
Arubaos CRITICAL 9.8
CVE-2022-37890

Unauthenticated buffer overflow vulnerabilities exist within the Aruba InstantOS and ArubaOS 10 web management interface. Successful exploitation res…

Fix: 6.4.4.8-4.2.4.21 / 6.5.4.24+
Fix from $2,300 2022-10-07
Arubaos CRITICAL 9.8
CVE-2022-37891

Unauthenticated buffer overflow vulnerabilities exist within the Aruba InstantOS and ArubaOS 10 web management interface. Successful exploitation res…

Fix: 6.4.4.8-4.2.4.21 / 6.5.4.24+
Fix from $2,300 2022-10-07
Arubaos MEDIUM 5.4
CVE-2022-37892

A vulnerability in the Aruba InstantOS and ArubaOS 10 web management interface could allow an unauthenticated remote attacker to conduct a stored cro…

Fix: 6.4.4.8-4.2.4.21 / 6.5.4.24+
Fix from $1,600 2022-10-07
Arubaos CRITICAL 9.8
CVE-2022-37888

There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution by sending special…

Fix: 6.4.4.8-4.2.4.21 / 6.5.4.24+
Fix from $2,300 2022-10-06
Clearpass Policy Manager HIGH 8.8
CVE-2022-23685

A vulnerability in the ClearPass Policy Manager web-based management interface exists which exposes some endpoints to a lack of Cross-Site Request Fo…

Fix: 6.9.12 / 6.10.7+
Fix from $1,950 2022-09-20
Clearpass Policy Manager HIGH 8.8
CVE-2022-23692

Vulnerabilities in the web-based management interface of ClearPass Policy Manager could allow an authenticated remote attacker to conduct SQL injecti…

Fix: 6.9.12 / 6.10.7+
Fix from $1,950 2022-09-20
Clearpass Policy Manager HIGH 8.8
CVE-2022-23693

Vulnerabilities in the web-based management interface of ClearPass Policy Manager could allow an authenticated remote attacker to conduct SQL injecti…

Fix: 6.9.12 / 6.10.7+
Fix from $1,950 2022-09-20
Clearpass Policy Manager HIGH 8.8
CVE-2022-23694

Vulnerabilities in the web-based management interface of ClearPass Policy Manager could allow an authenticated remote attacker to conduct SQL injecti…

Fix: 6.9.12 / 6.10.7+
Fix from $1,950 2022-09-20