Vulnerability index

Browse CVEs

523 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Edgeconnect Enterprise MEDIUM 6.8
CVE-2020-12149

The configuration backup/restore function in Silver Peak Unity ECOSTM (ECOS) appliance software was found to directly incorporate the user-controlled…

Fix: 8.1.9.15 / 8.3.0.8+
Fix from $1,600 2020-12-11
Arubaos CRITICAL 9.8
CVE-2020-24634

An attacker is able to remotely inject arbitrary commands by sending especially crafted packets destined to the PAPI (Aruba Networks AP Management pr…

Fix: 2.1.0.2 / 2.2.0.1+
Fix from $2,300 2020-12-11
Arubaos HIGH 7.2
CVE-2020-24637

Two vulnerabilities in ArubaOS GRUB2 implementation allows for an attacker to bypass secureboot. Successful exploitation of this vulnerability this c…

Fix: 2.1.0.2 / 2.2.0.1+
Fix from $1,950 2020-12-11
Arubaos CRITICAL 9.8
CVE-2020-24633

There are multiple buffer overflow vulnerabilities that could lead to unauthenticated remote code execution by sending especially crafted packets des…

Fix: 2.1.0.2 / 2.2.0.1+
Fix from $2,300 2020-12-11
Airwave Glass CRITICAL 9.8
CVE-2020-7128

A remote unauthenticated arbitrary code execution vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.

Fix: 1.3.2+
Fix from $2,300 2020-11-04
Airwave Glass HIGH 7.2
CVE-2020-7129

A remote execution of arbitrary commands vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.

Fix: 1.3.2+
Fix from $1,950 2020-11-04
Airwave Glass CRITICAL 9.8
CVE-2020-7127

A remote unauthenticated arbitrary code execution vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.

Fix: 1.3.2+
Fix from $2,300 2020-10-26
Airwave Glass CRITICAL 9.8
CVE-2020-7124

A remote unauthorized access vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.

Fix: 1.3.2+
Fix from $2,300 2020-10-26
Airwave Glass HIGH 8.8
CVE-2020-7125

A remote escalation of privilege vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.

Fix: 1.3.2+
Fix from $1,950 2020-10-26
Airwave Glass HIGH 7.2
CVE-2020-24631

A remote execution of arbitrary commands vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.

Fix: 1.3.2+
Fix from $1,950 2020-10-26
Airwave Glass HIGH 7.2
CVE-2020-24632

A remote execution of arbitrary commandss vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.

Fix: 1.3.2+
Fix from $1,950 2020-10-26
Airwave Glass MEDIUM 5.8
CVE-2020-7126

A remote server-side request forgery (ssrf) vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.

Fix: 1.3.2+
Fix from $1,600 2020-10-26
Cx 6200f Firmware HIGH 7.5
CVE-2020-7121

Two memory corruption vulnerabilities in the Aruba CX Switches Series 6200F, 6300, 6400, 8320, 8325, and 8400 have been found. Successful exploitatio…

Fix: after 10.04.3021
Fix from $1,950 2020-09-23
Cx 6200f Firmware HIGH 7.5
CVE-2020-7122

Two memory corruption vulnerabilities in the Aruba CX Switches Series 6200F, 6300, 6400, 8320, 8325, and 8400 have been found. Successful exploitatio…

Fix: after 10.04.1000
Fix from $1,950 2020-09-23
5400r Firmware HIGH 8.8
CVE-2019-5321

Aruba Intelligent Edge Switch Series 2540, 2530, 2930F, 2930M, 2920, 5400R, and 3810M with firmware 16.08.* before 16.08.0009, 16.09.* before 16.09.0…

Fix: 16.08.0009 / 16.09.0007+
Fix from $1,950 2020-08-26
5400r Firmware MEDIUM 6.1
CVE-2019-5320

Aruba Intelligent Edge Switch Series 2540, 2530, 2930F, 2930M, 2920, 5400R, and 3810M with firmware 16.08.* before 16.08.0009, 16.09.* before 16.09.0…

Fix: 16.08.0009 / 16.09.0007+
Fix from $1,600 2020-08-26
Clearpass Policy Manager CRITICAL 9.8
CVE-2020-7115EPSS 65%

The ClearPass Policy Manager web interface is affected by a vulnerability that leads to authentication bypass. Upon successful bypass an attacker cou…

Fix: 6.8.6 / 6.9.1+
Fix from $2,300 2020-06-03
Clearpass Policy Manager HIGH 7.2
CVE-2020-7116

The ClearPass Policy Manager WebUI administrative interface has an authenticated command remote execution. When the attacker is already authenticated…

Fix: 6.8.6 / 6.9.1+
Fix from $1,950 2020-06-03
Clearpass Policy Manager HIGH 7.2
CVE-2020-7117

The ClearPass Policy Manager WebUI administrative interface has an authenticated command remote execution. When the attacker is already authenticated…

Fix: 6.8.6 / 6.9.1+
Fix from $1,950 2020-06-03
Clearpass CRITICAL 9.8
CVE-2020-7114

A vulnerability exists allowing attackers, when present in the same network segment as ClearPass' management interface, to make changes to certain da…

Fix: 6.7.13 / 6.8.4+
Fix from $2,300 2020-04-16
Clearpass HIGH 7.2
CVE-2020-7111

A server side injection vulnerability exists which could allow an authenticated administrative user to achieve Remote Code Execution in ClearPass. Re…

Fix: 6.7.13 / 6.8.4+
Fix from $1,950 2020-04-16
Airwave HIGH 7.2
CVE-2019-5323

There are command injection vulnerabilities present in the AirWave application. Certain input fields controlled by an administrative user are not pro…

Fix: 8.2.10.1+
Fix from $1,950 2020-02-27
Airwave HIGH 7.2
CVE-2019-5326

An administrative application user of or application user with write access to Aruba Airwave VisualRF is able to obtain code execution on the AMP pla…

Fix: 8.2.10.1+
Fix from $1,950 2020-02-27
5400r Firmware HIGH 7.5
CVE-2019-5322

A remotely exploitable information disclosure vulnerability is present in Aruba Intelligent Edge Switch models 5400, 3810, 2920, 2930, 2530 with GigT…

Fix: 16.08.0009 / 16.09.0007+
Fix from $1,950 2020-02-13
Airwave CRITICAL 9.8
CVE-2016-2031EPSS 5%

Multiple vulnerabilities exists in Aruba Instate before 4.1.3.0 and 4.2.3.1 due to insufficient validation of user-supplied input and insufficient ch…

Fix: 4.1.3.0 / 8.2.0.0+
Fix from $2,300 2020-01-31
Airwave HIGH 7.5
CVE-2016-2032

A vulnerability exists in the Aruba AirWave Management Platform 8.x prior to 8.2 in the management interface of an underlying system component called…

Fix: 4.1.3.0 / 8.2.0.0+
Fix from $1,950 2020-01-31
Clearpass CRITICAL 9.8
CVE-2016-4401

Aruba ClearPass Policy Manager before 6.5.7 and 6.6.x before 6.6.2 allows attackers to obtain database credentials.

Fix: 6.5.7 / 6.6.2+
Fix from $2,300 2019-11-06
Instant HIGH 7.5
CVE-2018-16417

Aruba Instant 4.x prior to 6.4.4.8-4.2.4.12, 6.5.x prior to 6.5.4.11, 8.3.x prior to 8.3.0.6, and 8.4.x prior to 8.4.0.1 allows Command injection.

Fix: 4.2.4.12 / 6.5.4.11+
Fix from $1,950 2019-10-30
Arubaos HIGH 7.2
CVE-2019-5315

A command injection vulnerability is present in the web management interface of ArubaOS that permits an authenticated user to execute arbitrary comma…

Fix: 8.3.0.0+
Fix from $1,950 2019-09-13
Arubaos MEDIUM 6.1
CVE-2019-5314

Some web components in the ArubaOS software are vulnerable to HTTP Response splitting (CRLF injection) and Reflected XSS. An attacker would be able t…

Fix: 6.4.4.20 / 6.5.4.11+
Fix from $1,600 2019-09-13