Vulnerabilities > Arubanetworks > Arubaos > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-08-06 CVE-2024-42395 Out-of-bounds Write vulnerability in multiple products
There is a vulnerability in the AP Certificate Management Service which could allow a threat actor to execute an unauthenticated RCE attack.
network
low complexity
hp arubanetworks CWE-787
critical
9.8
2024-08-06 CVE-2024-42394 Out-of-bounds Write vulnerability in multiple products
There are vulnerabilities in the Soft AP Daemon Service which could allow a threat actor to execute an unauthenticated RCE attack.
network
low complexity
hp arubanetworks CWE-787
critical
9.8
2024-08-06 CVE-2024-42393 Out-of-bounds Write vulnerability in multiple products
There are vulnerabilities in the Soft AP Daemon Service which could allow a threat actor to execute an unauthenticated RCE attack.
network
low complexity
hp arubanetworks CWE-787
critical
9.8
2023-11-14 CVE-2023-45616 Classic Buffer Overflow vulnerability in multiple products
There is a buffer overflow vulnerability in the underlying AirWave client service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's access point management protocol) UDP port (8211).
network
low complexity
arubanetworks hp CWE-120
critical
9.8
2023-11-14 CVE-2023-45615 Classic Buffer Overflow vulnerability in multiple products
There are buffer overflow vulnerabilities in the underlying CLI service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's access point management protocol) UDP port (8211).
network
low complexity
arubanetworks hp CWE-120
critical
9.8
2023-11-14 CVE-2023-45614 Classic Buffer Overflow vulnerability in multiple products
There are buffer overflow vulnerabilities in the underlying CLI service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's access point management protocol) UDP port (8211).
network
low complexity
arubanetworks hp CWE-120
critical
9.8
2023-07-25 CVE-2023-35982 Classic Buffer Overflow vulnerability in multiple products
There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's access point management protocol) UDP port (8211).
network
low complexity
arubanetworks hp CWE-120
critical
9.8
2023-07-25 CVE-2023-35981 Classic Buffer Overflow vulnerability in multiple products
There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's access point management protocol) UDP port (8211).
network
low complexity
arubanetworks hp CWE-120
critical
9.8
2023-07-25 CVE-2023-35980 Classic Buffer Overflow vulnerability in multiple products
There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's access point management protocol) UDP port (8211).
network
low complexity
arubanetworks hp CWE-120
critical
9.8
2023-03-01 CVE-2023-22757 Classic Buffer Overflow vulnerability in Arubanetworks Arubaos and Sd-Wan
There are buffer overflow vulnerabilities in multiple underlying operating system processes that could lead to unauthenticated remote code execution by sending specially crafted packets via the PAPI protocol.
network
low complexity
arubanetworks CWE-120
critical
9.8