Vulnerabilities > Arubanetworks > Airwave Glass > Critical

DATE CVE VULNERABILITY TITLE RISK
2021-01-15 CVE-2020-24639 Deserialization of Untrusted Data vulnerability in Arubanetworks Airwave Glass
There is a vulnerability caused by unsafe Java deserialization that allows for arbitrary command execution in a containerized environment within Airwave Glass before 1.3.3.
network
low complexity
arubanetworks CWE-502
critical
9.8
2021-01-15 CVE-2020-24640 Unspecified vulnerability in Arubanetworks Airwave Glass
There is a vulnerability caused by insufficient input validation that allows for arbitrary command execution in a containerized environment within Airwave Glass before 1.3.3.
network
low complexity
arubanetworks
critical
9.8
2020-11-04 CVE-2020-7128 Missing Authentication for Critical Function vulnerability in Arubanetworks Airwave Glass 1.2.1/1.3.0/1.3.1
A remote unauthenticated arbitrary code execution vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.
network
low complexity
arubanetworks CWE-306
critical
9.8
2020-10-26 CVE-2020-7124 Unspecified vulnerability in Arubanetworks Airwave Glass 1.2.1/1.3.0/1.3.1
A remote unauthorized access vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.
network
low complexity
arubanetworks
critical
9.8
2020-10-26 CVE-2020-7127 Unspecified vulnerability in Arubanetworks Airwave Glass 1.2.1/1.3.0/1.3.1
A remote unauthenticated arbitrary code execution vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.
network
low complexity
arubanetworks
critical
9.8