Vulnerability index

Browse CVEs

523 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Edgeconnect Sd Wan Orchestrator MEDIUM 6.5
CVE-2023-37435

Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to con…

Fix: 9.3.1+
Fix from $1,600 2023-08-22
Edgeconnect Sd Wan Orchestrator MEDIUM 6.5
CVE-2023-37436

Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to con…

Fix: 9.3.1+
Fix from $1,600 2023-08-22
Edgeconnect Sd Wan Orchestrator MEDIUM 6.5
CVE-2023-37437

Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to con…

Fix: 9.3.1+
Fix from $1,600 2023-08-22
Edgeconnect Sd Wan Orchestrator MEDIUM 6.5
CVE-2023-37438

Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to con…

Fix: 9.3.1+
Fix from $1,600 2023-08-22
Edgeconnect Sd Wan Orchestrator MEDIUM 6.1
CVE-2023-37439

Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to con…

Fix: 9.1.8 / 9.2.6+
Fix from $1,600 2023-08-22
Edgeconnect Sd Wan Orchestrator MEDIUM 5.3
CVE-2023-37440

A vulnerability in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an unauthenticated remote attacker to conduct a …

Fix: 9.3.1+
Fix from $1,600 2023-08-22
Edgeconnect Sd Wan Orchestrator HIGH 8.1
CVE-2023-37429

Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to con…

Fix: after 9.2.5
Fix from $1,950 2023-08-22
Edgeconnect Sd Wan Orchestrator HIGH 8.1
CVE-2023-37430

Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to con…

Fix: after 9.2.5
Fix from $1,950 2023-08-22
Edgeconnect Sd Wan Orchestrator HIGH 8.1
CVE-2023-37431

Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to con…

Fix: after 9.2.5
Fix from $1,950 2023-08-22
Edgeconnect Sd Wan Orchestrator HIGH 7.5
CVE-2023-37426

EdgeConnect SD-WAN Orchestrator instances prior to the versions resolved in this advisory were found to have shared static SSH host keys for all inst…

Fix: after 9.2.5
Fix from $1,950 2023-08-22
Edgeconnect Sd Wan Orchestrator HIGH 7.2
CVE-2023-37427

A vulnerability in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to run arbitrar…

Fix: after 9.2.5
Fix from $1,950 2023-08-22
Edgeconnect Sd Wan Orchestrator HIGH 7.2
CVE-2023-37428

A vulnerability in the EdgeConnect SD-WAN Orchestrator web-based management interface allows remote authenticated users to run arbitrary commands on …

Fix: after 9.2.5
Fix from $1,950 2023-08-22
Edgeconnect Sd Wan Orchestrator MEDIUM 6.1
CVE-2023-37425

A vulnerability in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an unauthenticated remote attacker to conduct a …

Fix: after 9.2.5
Fix from $1,600 2023-08-22
Edgeconnect Sd Wan Orchestrator HIGH 8.1
CVE-2023-37424

A vulnerability in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an unauthenticated remote attacker to run arbitr…

Fix: after 9.2.5
Fix from $1,950 2023-08-22
Edgeconnect Sd Wan Orchestrator MEDIUM 5.4
CVE-2023-37421

Vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to conduct a st…

Fix: after 9.2.5
Fix from $1,600 2023-08-22
Edgeconnect Sd Wan Orchestrator MEDIUM 5.4
CVE-2023-37422

Vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to conduct a st…

Fix: after 9.2.5
Fix from $1,600 2023-08-22
Edgeconnect Sd Wan Orchestrator MEDIUM 5.4
CVE-2023-37423

Vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to conduct a st…

Fix: after 9.2.5
Fix from $1,600 2023-08-22
Arubaos CRITICAL 9.8
CVE-2023-35980

There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution by sending special…

Fix: 6.4.4.8-4.2.4.22 / 6.5.4.25+
Fix from $2,300 2023-07-25
Arubaos CRITICAL 9.8
CVE-2023-35981

There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution by sending special…

Fix: 6.4.4.8-4.2.4.22 / 6.5.4.25+
Fix from $2,300 2023-07-25
Arubaos CRITICAL 9.8
CVE-2023-35982

There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution by sending special…

Fix: 6.4.4.8-4.2.4.22 / 6.5.4.25+
Fix from $2,300 2023-07-25
Arubaos HIGH 8.1
CVE-2023-35975

An authenticated path traversal vulnerability exists in the ArubaOS command line interface. Successful exploitation of this vulnerability results in …

Fix: 8.6.0.21 / 8.10.0.7+
Fix from $1,950 2023-07-05
Arubaos HIGH 7.5
CVE-2023-35979

There is an unauthenticated buffer overflow vulnerability in the process controlling the ArubaOS web-based management interface. Successful exploitat…

Fix: 8.6.0.21 / 8.10.0.7+
Fix from $1,950 2023-07-05
Arubaos HIGH 7.2
CVE-2023-35972

An authenticated remote command injection vulnerability exists in the ArubaOS web-based management interface. Successful exploitation of this vulnera…

Fix: 8.6.0.21 / 8.10.0.7+
Fix from $1,950 2023-07-05
Arubaos HIGH 7.2
CVE-2023-35973

Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities result …

Fix: 8.6.0.21 / 8.10.0.7+
Fix from $1,950 2023-07-05
Arubaos HIGH 7.2
CVE-2023-35974

Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities result …

Fix: 8.6.0.21 / 8.10.0.7+
Fix from $1,950 2023-07-05
Arubaos MEDIUM 6.5
CVE-2023-35976

Vulnerabilities exist which allow an authenticated attacker to access sensitive information on the ArubaOS command line interface. Successful exploit…

Fix: 8.6.0.21 / 8.10.0.7+
Fix from $1,600 2023-07-05
Arubaos MEDIUM 6.5
CVE-2023-35977

Vulnerabilities exist which allow an authenticated attacker to access sensitive information on the ArubaOS command line interface. Successful exploit…

Fix: 8.6.0.21 / 8.10.0.7+
Fix from $1,600 2023-07-05
Arubaos MEDIUM 6.1
CVE-2023-35971

A vulnerability in the ArubaOS web-based management interface could allow an unauthenticated remote attacker to conduct a stored cross-site scripting…

Fix: 8.6.0.21 / 8.10.0.7+
Fix from $1,600 2023-07-05
Arubaos MEDIUM 6.1
CVE-2023-35978

A vulnerability in ArubaOS could allow an unauthenticated remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of …

Fix: 8.6.0.21 / 8.10.0.7+
Fix from $1,600 2023-07-05
Edgeconnect Enterprise MEDIUM 6.5
CVE-2023-30509

Multiple authenticated path traversal vulnerabilities exist in the Aruba EdgeConnect Enterprise command line interface. Successful exploitation of th…

Fix: after 9.2.3.0
Fix from $1,600 2023-05-16