Vulnerability index

Browse CVEs

523 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Arubaos MEDIUM 5.3
CVE-2026-23822

A vulnerability in the XML handling component of AOS-8 DHCP services could allow an unauthenticated remote attacker to trigger a denial-of-service co…

Fix: 8.10.0.22 / 8.12.0.7+
Fix from $1,600 2026-05-12
Arubaos HIGH 8.1
CVE-2026-23808

A vulnerability has been identified in a standardized wireless roaming protocol that could enable a malicious actor to install an attacker-controlled…

Fix: after 10.7.2.2
Fix from $1,950 2026-03-04
Arubaos HIGH 7.6
CVE-2026-23809

A technique has been identified that adapts a known port-stealing method to Wi-Fi environments that use multiple BSSIDs. By leveraging the relationsh…

Fix: after 10.7.2.2
Fix from $1,950 2026-03-04
Arubaos MEDIUM 5.4
CVE-2026-23601

A vulnerability has been identified in the wireless encryption handling of Wi-Fi transmissions. A malicious actor can generate shared-key authenticat…

Fix: after 10.7.2.2
Fix from $1,600 2026-03-04
Edgeconnect Sd Wan Orchestrator CRITICAL 9.8
CVE-2025-37184

A vulnerability exists in an Orchestrator service that could allow an unauthenticated remote attacker to bypass multi-factor authentication requireme…

Fix: 9.3.6 / 9.4.3+
Fix from $2,300 2026-01-14
Edgeconnect Sd Wan Orchestrator HIGH 7.2
CVE-2025-37182

Vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to perform SQL …

Fix: 9.5.6+
Fix from $1,950 2026-01-14
Edgeconnect Sd Wan Orchestrator HIGH 7.2
CVE-2025-37183

Vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to perform SQL …

Fix: 9.5.6+
Fix from $1,950 2026-01-14
Edgeconnect Sd Wan Orchestrator HIGH 7.2
CVE-2025-37181

Vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to perform SQL …

Fix: 9.5.6+
Fix from $1,950 2026-01-14
Arubaos MEDIUM 5.3
CVE-2025-37179

Multiple out-of-bounds read vulnerabilities were identified in a system component responsible for handling certain data buffers. Due to insufficient …

Fix: 8.10.0.21 / 8.13.1.1+
Fix from $1,600 2026-01-13
Arubaos HIGH 7.5
CVE-2025-37178

Multiple out-of-bounds read vulnerabilities were identified in a system component responsible for handling certain data buffers. Due to insufficient …

Fix: 8.10.0.21 / 8.13.1.1+
Fix from $1,950 2026-01-13
Arubaos HIGH 7.2
CVE-2025-37171

Authenticated command injection vulnerabilities exist in the web-based management interface of mobility conductors running AOS-8 operating system. Su…

Fix: 8.10.0.21 / 8.13.1.1+
Fix from $1,950 2026-01-13
Arubaos HIGH 7.2
CVE-2025-37172

Authenticated command injection vulnerabilities exist in the web-based management interface of mobility conductors running AOS-8 operating system. Su…

Fix: 8.10.0.21 / 8.13.1.1+
Fix from $1,950 2026-01-13
Arubaos HIGH 7.2
CVE-2025-37173

An improper input handling vulnerability exists in the web-based management interface of mobility conductors running either AOS-10 or AOS-8 operating…

Fix: 8.10.0.21 / 8.13.1.1+
Fix from $1,950 2026-01-13
Arubaos HIGH 7.2
CVE-2025-37174

Authenticated arbitrary file write vulnerability exists in the web-based management interface of mobility conductors running either AOS-10 or AOS-8 o…

Fix: 8.10.0.21 / 8.13.1.1+
Fix from $1,950 2026-01-13
Arubaos HIGH 7.2
CVE-2025-37175

Arbitrary file upload vulnerability exists in the web-based management interface of mobility conductors running either AOS-10 or AOS-8 operating syst…

Fix: 8.10.0.21 / 8.13.1.1+
Fix from $1,950 2026-01-13
Arubaos HIGH 7.2
CVE-2025-37176

A command injection vulnerability in AOS-8 allows an authenticated privileged user to alter a package header to inject shell commands, potentially af…

Fix: 8.10.0.21 / 8.13.1.1+
Fix from $1,950 2026-01-13
Arubaos MEDIUM 6.5
CVE-2025-37177

An arbitrary file deletion vulnerability has been identified in the command-line interface of mobility conductors running either AOS-10 or AOS-8 oper…

Fix: 8.10.0.21 / 8.13.1.1+
Fix from $1,600 2026-01-13
Arubaos CRITICAL 9.1
CVE-2025-37168

Arbitrary file deletion vulnerability have been identified in a system function of mobility conductors running AOS-8 operating system. Successful exp…

Fix: 8.10.0.21 / 8.13.1.1+
Fix from $2,300 2026-01-13
Arubaos HIGH 7.2
CVE-2025-37169

A stack overflow vulnerability exists in the AOS-10 web-based management interface of a Mobility Gateway. Successful exploitation could allow an auth…

Fix: 10.4.1.10 / 10.7.2.2+
Fix from $1,950 2026-01-13
Arubaos HIGH 7.2
CVE-2025-37170

Authenticated command injection vulnerabilities exist in the web-based management interface of mobility conductors running AOS-8 operating system. Su…

Fix: 8.10.0.21 / 8.13.1.1+
Fix from $1,950 2026-01-13
Arubaos HIGH 8.8
CVE-2025-37162

A vulnerability in the command line interface of affected devices could allow an authenticated remote attacker to conduct a command injection attack.…

Fix: 10.7.2.0+
Fix from $1,950 2025-11-18
Arubaos HIGH 7.5
CVE-2025-37161

A vulnerability in the web-based management interface of affected products could allow an unauthenticated remote attacker to cause a denial of servic…

Fix: 10.7.2.0+
Fix from $1,950 2025-11-18
Airwave HIGH 7.2
CVE-2025-37163

A command injection vulnerability has been identified in the command line interface of the HPE Aruba Networking Airwave Platform. An authenticated at…

Fix: 8.3.0.5+
Fix from $1,950 2025-11-18
Arubaos HIGH 7.2
CVE-2025-37134

An authenticated command injection vulnerability exists in the CLI binary of an AOS-8 Controller/Mobility Conductor operating system. Successful expl…

Fix: 8.10.0.19 / 8.12.0.6+
Fix from $1,950 2025-10-14
Arubaos MEDIUM 6.5
CVE-2025-37135

Arbitrary file deletion vulnerabilities have been identified in the command-line interface of an AOS-8 Controller/Mobility Conductor. Successful expl…

Fix: 8.10.0.19 / 8.12.0.6+
Fix from $1,600 2025-10-14
Arubaos MEDIUM 6.5
CVE-2025-37136

Arbitrary file deletion vulnerabilities have been identified in the command-line interface of an AOS-8 Controller/Mobility Conductor. Successful expl…

Fix: 8.10.0.19 / 8.12.0.6+
Fix from $1,600 2025-10-14
Arubaos MEDIUM 6.5
CVE-2025-37137

Arbitrary file deletion vulnerabilities have been identified in the command-line interface of an AOS-8 Controller/Mobility Conductor. Successful expl…

Fix: 8.10.0.19 / 8.12.0.6+
Fix from $1,600 2025-10-14
Arubaos MEDIUM 6.2
CVE-2025-37138

An authenticated command injection vulnerability exists in the command line interface binary of AOS-10 GW and AOS-8 Controllers/Mobility Conductor op…

Fix: 8.10.0.19 / 8.12.0.6+
Fix from $1,600 2025-10-14
Arubaos HIGH 7.2
CVE-2025-37132

An arbitrary file write vulnerability exists in the web-based management interface of both the AOS-10 GW and AOS-8 Controller/Mobility Conductor oper…

Fix: 8.10.0.19 / 8.12.0.6+
Fix from $1,950 2025-10-14
Arubaos HIGH 7.2
CVE-2025-37133

An authenticated command injection vulnerability exists in the CLI binary of an AOS-8 Controller/Mobility Conductor operating system. Successful expl…

Fix: 8.10.0.19 / 8.12.0.6+
Fix from $1,950 2025-10-14