Vulnerability index

Browse CVEs

523 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.8 CVE-2020-12149 The configuration backup/restore function in Silver Peak Unity ECOSTM (ECOS) appliance software was found to directly incorporate the user-controlled… Edgeconnect Enterprise 8.1.9.15 / 8.3.0.8+ Fix from $1,6002020-12-11 CRITICAL 9.8 CVE-2020-24634 An attacker is able to remotely inject arbitrary commands by sending especially crafted packets destined to the PAPI (Aruba Networks AP Management pr… Arubaos 2.1.0.2 / 2.2.0.1+ Fix from $2,3002020-12-11 HIGH 7.2 CVE-2020-24637 Two vulnerabilities in ArubaOS GRUB2 implementation allows for an attacker to bypass secureboot. Successful exploitation of this vulnerability this c… Arubaos 2.1.0.2 / 2.2.0.1+ Fix from $1,9502020-12-11 CRITICAL 9.8 CVE-2020-24633 There are multiple buffer overflow vulnerabilities that could lead to unauthenticated remote code execution by sending especially crafted packets des… Arubaos 2.1.0.2 / 2.2.0.1+ Fix from $2,3002020-12-11 CRITICAL 9.8 CVE-2020-7128 A remote unauthenticated arbitrary code execution vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2. Airwave Glass 1.3.2+ Fix from $2,3002020-11-04 HIGH 7.2 CVE-2020-7129 A remote execution of arbitrary commands vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2. Airwave Glass 1.3.2+ Fix from $1,9502020-11-04 CRITICAL 9.8 CVE-2020-7127 A remote unauthenticated arbitrary code execution vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2. Airwave Glass 1.3.2+ Fix from $2,3002020-10-26 CRITICAL 9.8 CVE-2020-7124 A remote unauthorized access vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2. Airwave Glass 1.3.2+ Fix from $2,3002020-10-26 HIGH 8.8 CVE-2020-7125 A remote escalation of privilege vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2. Airwave Glass 1.3.2+ Fix from $1,9502020-10-26 HIGH 7.2 CVE-2020-24631 A remote execution of arbitrary commands vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2. Airwave Glass 1.3.2+ Fix from $1,9502020-10-26 HIGH 7.2 CVE-2020-24632 A remote execution of arbitrary commandss vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2. Airwave Glass 1.3.2+ Fix from $1,9502020-10-26 MEDIUM 5.8 CVE-2020-7126 A remote server-side request forgery (ssrf) vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2. Airwave Glass 1.3.2+ Fix from $1,6002020-10-26 HIGH 7.5 CVE-2020-7121 Two memory corruption vulnerabilities in the Aruba CX Switches Series 6200F, 6300, 6400, 8320, 8325, and 8400 have been found. Successful exploitatio… Cx 6200f Firmware after 10.04.3021 Fix from $1,9502020-09-23 HIGH 7.5 CVE-2020-7122 Two memory corruption vulnerabilities in the Aruba CX Switches Series 6200F, 6300, 6400, 8320, 8325, and 8400 have been found. Successful exploitatio… Cx 6200f Firmware after 10.04.1000 Fix from $1,9502020-09-23 HIGH 8.8 CVE-2019-5321 Aruba Intelligent Edge Switch Series 2540, 2530, 2930F, 2930M, 2920, 5400R, and 3810M with firmware 16.08.* before 16.08.0009, 16.09.* before 16.09.0… 5400r Firmware 16.08.0009 / 16.09.0007+ Fix from $1,9502020-08-26 MEDIUM 6.1 CVE-2019-5320 Aruba Intelligent Edge Switch Series 2540, 2530, 2930F, 2930M, 2920, 5400R, and 3810M with firmware 16.08.* before 16.08.0009, 16.09.* before 16.09.0… 5400r Firmware 16.08.0009 / 16.09.0007+ Fix from $1,6002020-08-26 CRITICAL 9.8 CVE-2020-7115EPSS 65% The ClearPass Policy Manager web interface is affected by a vulnerability that leads to authentication bypass. Upon successful bypass an attacker cou… Clearpass Policy Manager 6.8.6 / 6.9.1+ Fix from $2,3002020-06-03 HIGH 7.2 CVE-2020-7116 The ClearPass Policy Manager WebUI administrative interface has an authenticated command remote execution. When the attacker is already authenticated… Clearpass Policy Manager 6.8.6 / 6.9.1+ Fix from $1,9502020-06-03 HIGH 7.2 CVE-2020-7117 The ClearPass Policy Manager WebUI administrative interface has an authenticated command remote execution. When the attacker is already authenticated… Clearpass Policy Manager 6.8.6 / 6.9.1+ Fix from $1,9502020-06-03 CRITICAL 9.8 CVE-2020-7114 A vulnerability exists allowing attackers, when present in the same network segment as ClearPass' management interface, to make changes to certain da… Clearpass 6.7.13 / 6.8.4+ Fix from $2,3002020-04-16 HIGH 7.2 CVE-2020-7111 A server side injection vulnerability exists which could allow an authenticated administrative user to achieve Remote Code Execution in ClearPass. Re… Clearpass 6.7.13 / 6.8.4+ Fix from $1,9502020-04-16 HIGH 7.2 CVE-2019-5323 There are command injection vulnerabilities present in the AirWave application. Certain input fields controlled by an administrative user are not pro… Airwave 8.2.10.1+ Fix from $1,9502020-02-27 HIGH 7.2 CVE-2019-5326 An administrative application user of or application user with write access to Aruba Airwave VisualRF is able to obtain code execution on the AMP pla… Airwave 8.2.10.1+ Fix from $1,9502020-02-27 HIGH 7.5 CVE-2019-5322 A remotely exploitable information disclosure vulnerability is present in Aruba Intelligent Edge Switch models 5400, 3810, 2920, 2930, 2530 with GigT… 5400r Firmware 16.08.0009 / 16.09.0007+ Fix from $1,9502020-02-13 CRITICAL 9.8 CVE-2016-2031EPSS 5% Multiple vulnerabilities exists in Aruba Instate before 4.1.3.0 and 4.2.3.1 due to insufficient validation of user-supplied input and insufficient ch… Airwave 4.1.3.0 / 8.2.0.0+ Fix from $2,3002020-01-31 HIGH 7.5 CVE-2016-2032 A vulnerability exists in the Aruba AirWave Management Platform 8.x prior to 8.2 in the management interface of an underlying system component called… Airwave 4.1.3.0 / 8.2.0.0+ Fix from $1,9502020-01-31 CRITICAL 9.8 CVE-2016-4401 Aruba ClearPass Policy Manager before 6.5.7 and 6.6.x before 6.6.2 allows attackers to obtain database credentials. Clearpass 6.5.7 / 6.6.2+ Fix from $2,3002019-11-06 HIGH 7.5 CVE-2018-16417 Aruba Instant 4.x prior to 6.4.4.8-4.2.4.12, 6.5.x prior to 6.5.4.11, 8.3.x prior to 8.3.0.6, and 8.4.x prior to 8.4.0.1 allows Command injection. Instant 4.2.4.12 / 6.5.4.11+ Fix from $1,9502019-10-30 HIGH 7.2 CVE-2019-5315 A command injection vulnerability is present in the web management interface of ArubaOS that permits an authenticated user to execute arbitrary comma… Arubaos 8.3.0.0+ Fix from $1,9502019-09-13 MEDIUM 6.1 CVE-2019-5314 Some web components in the ArubaOS software are vulnerable to HTTP Response splitting (CRLF injection) and Reflected XSS. An attacker would be able t… Arubaos 6.4.4.20 / 6.5.4.11+ Fix from $1,6002019-09-13