Vulnerabilities > Arubanetworks > Airwave > 7.7.8

DATE CVE VULNERABILITY TITLE RISK
2021-04-29 CVE-2021-25163 XXE vulnerability in Arubanetworks Airwave
A remote XML external entity vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1.
network
low complexity
arubanetworks CWE-611
5.5
2021-04-28 CVE-2021-25165 XXE vulnerability in Arubanetworks Airwave
A remote XML external entity vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1.
network
low complexity
arubanetworks CWE-611
5.5
2021-04-28 CVE-2021-25164 XXE vulnerability in Arubanetworks Airwave
A remote XML external entity vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1.
network
low complexity
arubanetworks CWE-611
5.5
2021-04-28 CVE-2021-25152 Deserialization of Untrusted Data vulnerability in Arubanetworks Airwave
A remote insecure deserialization vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1.
network
low complexity
arubanetworks CWE-502
critical
9.0
2021-04-28 CVE-2021-25154 Unspecified vulnerability in Arubanetworks Airwave
A remote escalation of privilege vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1.
network
arubanetworks
6.0
2021-04-28 CVE-2021-25153 SQL Injection vulnerability in Arubanetworks Airwave
A remote SQL injection vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1.
network
low complexity
arubanetworks CWE-89
5.5
2021-04-28 CVE-2021-25151 Deserialization of Untrusted Data vulnerability in Arubanetworks Airwave
A remote insecure deserialization vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1.
network
low complexity
arubanetworks CWE-502
critical
9.0
2021-04-28 CVE-2021-25147 Improper Authentication vulnerability in Arubanetworks Airwave
A remote authentication restriction bypass vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1.
6.8
2021-03-05 CVE-2021-26971 Unspecified vulnerability in Arubanetworks Airwave
A remote authenticated arbitrary command execution vulnerability was discovered in Aruba AirWave Management Platform version(s): Prior to 8.2.12.0.
network
low complexity
arubanetworks
6.5
2021-03-05 CVE-2021-26970 Command Injection vulnerability in Arubanetworks Airwave
A remote authenticated arbitrary command execution vulnerability was discovered in Aruba AirWave Management Platform version(s): Prior to 8.2.12.0.
network
low complexity
arubanetworks CWE-77
6.5