Vulnerability index

Browse CVEs

523 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.3 CVE-2026-23822 A vulnerability in the XML handling component of AOS-8 DHCP services could allow an unauthenticated remote attacker to trigger a denial-of-service co… Arubaos 8.10.0.22 / 8.12.0.7+ Fix from $1,6002026-05-12 HIGH 8.1 CVE-2026-23808 A vulnerability has been identified in a standardized wireless roaming protocol that could enable a malicious actor to install an attacker-controlled… Arubaos after 10.7.2.2 Fix from $1,9502026-03-04 HIGH 7.6 CVE-2026-23809 A technique has been identified that adapts a known port-stealing method to Wi-Fi environments that use multiple BSSIDs. By leveraging the relationsh… Arubaos after 10.7.2.2 Fix from $1,9502026-03-04 MEDIUM 5.4 CVE-2026-23601 A vulnerability has been identified in the wireless encryption handling of Wi-Fi transmissions. A malicious actor can generate shared-key authenticat… Arubaos after 10.7.2.2 Fix from $1,6002026-03-04 CRITICAL 9.8 CVE-2025-37184 A vulnerability exists in an Orchestrator service that could allow an unauthenticated remote attacker to bypass multi-factor authentication requireme… Edgeconnect Sd Wan Orchestrator 9.3.6 / 9.4.3+ Fix from $2,3002026-01-14 HIGH 7.2 CVE-2025-37182 Vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to perform SQL … Edgeconnect Sd Wan Orchestrator 9.5.6+ Fix from $1,9502026-01-14 HIGH 7.2 CVE-2025-37183 Vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to perform SQL … Edgeconnect Sd Wan Orchestrator 9.5.6+ Fix from $1,9502026-01-14 HIGH 7.2 CVE-2025-37181 Vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to perform SQL … Edgeconnect Sd Wan Orchestrator 9.5.6+ Fix from $1,9502026-01-14 MEDIUM 5.3 CVE-2025-37179 Multiple out-of-bounds read vulnerabilities were identified in a system component responsible for handling certain data buffers. Due to insufficient … Arubaos 8.10.0.21 / 8.13.1.1+ Fix from $1,6002026-01-13 HIGH 7.5 CVE-2025-37178 Multiple out-of-bounds read vulnerabilities were identified in a system component responsible for handling certain data buffers. Due to insufficient … Arubaos 8.10.0.21 / 8.13.1.1+ Fix from $1,9502026-01-13 HIGH 7.2 CVE-2025-37171 Authenticated command injection vulnerabilities exist in the web-based management interface of mobility conductors running AOS-8 operating system. Su… Arubaos 8.10.0.21 / 8.13.1.1+ Fix from $1,9502026-01-13 HIGH 7.2 CVE-2025-37172 Authenticated command injection vulnerabilities exist in the web-based management interface of mobility conductors running AOS-8 operating system. Su… Arubaos 8.10.0.21 / 8.13.1.1+ Fix from $1,9502026-01-13 HIGH 7.2 CVE-2025-37173 An improper input handling vulnerability exists in the web-based management interface of mobility conductors running either AOS-10 or AOS-8 operating… Arubaos 8.10.0.21 / 8.13.1.1+ Fix from $1,9502026-01-13 HIGH 7.2 CVE-2025-37174 Authenticated arbitrary file write vulnerability exists in the web-based management interface of mobility conductors running either AOS-10 or AOS-8 o… Arubaos 8.10.0.21 / 8.13.1.1+ Fix from $1,9502026-01-13 HIGH 7.2 CVE-2025-37175 Arbitrary file upload vulnerability exists in the web-based management interface of mobility conductors running either AOS-10 or AOS-8 operating syst… Arubaos 8.10.0.21 / 8.13.1.1+ Fix from $1,9502026-01-13 HIGH 7.2 CVE-2025-37176 A command injection vulnerability in AOS-8 allows an authenticated privileged user to alter a package header to inject shell commands, potentially af… Arubaos 8.10.0.21 / 8.13.1.1+ Fix from $1,9502026-01-13 MEDIUM 6.5 CVE-2025-37177 An arbitrary file deletion vulnerability has been identified in the command-line interface of mobility conductors running either AOS-10 or AOS-8 oper… Arubaos 8.10.0.21 / 8.13.1.1+ Fix from $1,6002026-01-13 CRITICAL 9.1 CVE-2025-37168 Arbitrary file deletion vulnerability have been identified in a system function of mobility conductors running AOS-8 operating system. Successful exp… Arubaos 8.10.0.21 / 8.13.1.1+ Fix from $2,3002026-01-13 HIGH 7.2 CVE-2025-37169 A stack overflow vulnerability exists in the AOS-10 web-based management interface of a Mobility Gateway. Successful exploitation could allow an auth… Arubaos 10.4.1.10 / 10.7.2.2+ Fix from $1,9502026-01-13 HIGH 7.2 CVE-2025-37170 Authenticated command injection vulnerabilities exist in the web-based management interface of mobility conductors running AOS-8 operating system. Su… Arubaos 8.10.0.21 / 8.13.1.1+ Fix from $1,9502026-01-13 HIGH 8.8 CVE-2025-37162 A vulnerability in the command line interface of affected devices could allow an authenticated remote attacker to conduct a command injection attack.… Arubaos 10.7.2.0+ Fix from $1,9502025-11-18 HIGH 7.5 CVE-2025-37161 A vulnerability in the web-based management interface of affected products could allow an unauthenticated remote attacker to cause a denial of servic… Arubaos 10.7.2.0+ Fix from $1,9502025-11-18 HIGH 7.2 CVE-2025-37163 A command injection vulnerability has been identified in the command line interface of the HPE Aruba Networking Airwave Platform. An authenticated at… Airwave 8.3.0.5+ Fix from $1,9502025-11-18 HIGH 7.2 CVE-2025-37134 An authenticated command injection vulnerability exists in the CLI binary of an AOS-8 Controller/Mobility Conductor operating system. Successful expl… Arubaos 8.10.0.19 / 8.12.0.6+ Fix from $1,9502025-10-14 MEDIUM 6.5 CVE-2025-37135 Arbitrary file deletion vulnerabilities have been identified in the command-line interface of an AOS-8 Controller/Mobility Conductor. Successful expl… Arubaos 8.10.0.19 / 8.12.0.6+ Fix from $1,6002025-10-14 MEDIUM 6.5 CVE-2025-37136 Arbitrary file deletion vulnerabilities have been identified in the command-line interface of an AOS-8 Controller/Mobility Conductor. Successful expl… Arubaos 8.10.0.19 / 8.12.0.6+ Fix from $1,6002025-10-14 MEDIUM 6.5 CVE-2025-37137 Arbitrary file deletion vulnerabilities have been identified in the command-line interface of an AOS-8 Controller/Mobility Conductor. Successful expl… Arubaos 8.10.0.19 / 8.12.0.6+ Fix from $1,6002025-10-14 MEDIUM 6.2 CVE-2025-37138 An authenticated command injection vulnerability exists in the command line interface binary of AOS-10 GW and AOS-8 Controllers/Mobility Conductor op… Arubaos 8.10.0.19 / 8.12.0.6+ Fix from $1,6002025-10-14 HIGH 7.2 CVE-2025-37132 An arbitrary file write vulnerability exists in the web-based management interface of both the AOS-10 GW and AOS-8 Controller/Mobility Conductor oper… Arubaos 8.10.0.19 / 8.12.0.6+ Fix from $1,9502025-10-14 HIGH 7.2 CVE-2025-37133 An authenticated command injection vulnerability exists in the CLI binary of an AOS-8 Controller/Mobility Conductor operating system. Successful expl… Arubaos 8.10.0.19 / 8.12.0.6+ Fix from $1,9502025-10-14