Vulnerabilities > Arubanetworks > Airwave Glass > High

DATE CVE VULNERABILITY TITLE RISK
2021-01-15 CVE-2020-24641 Server-Side Request Forgery (SSRF) vulnerability in Arubanetworks Airwave Glass
In Aruba AirWave Glass before 1.3.3, there is a Server-Side Request Forgery vulnerability through an unauthenticated endpoint that if successfully exploited can result in disclosure of sensitive information.
network
low complexity
arubanetworks CWE-918
7.5
2021-01-15 CVE-2020-24638 Unspecified vulnerability in Arubanetworks Airwave Glass
Multiple authenticated remote command executions are possible in Airwave Glass before 1.3.3 via the glassadmin cli.
network
low complexity
arubanetworks
7.2
2020-11-04 CVE-2020-7129 Unspecified vulnerability in Arubanetworks Airwave Glass 1.2.1/1.3.0/1.3.1
A remote execution of arbitrary commands vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.
network
low complexity
arubanetworks
7.2
2020-10-26 CVE-2020-7125 Improper Privilege Management vulnerability in Arubanetworks Airwave Glass 1.2.1/1.3.0/1.3.1
A remote escalation of privilege vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.
network
low complexity
arubanetworks CWE-269
8.8
2020-10-26 CVE-2020-24632 Unspecified vulnerability in Arubanetworks Airwave Glass 1.2.1/1.3.0/1.3.1
A remote execution of arbitrary commandss vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.
network
low complexity
arubanetworks
7.2
2020-10-26 CVE-2020-24631 Unspecified vulnerability in Arubanetworks Airwave Glass 1.2.1/1.3.0/1.3.1
A remote execution of arbitrary commands vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.
network
low complexity
arubanetworks
7.2