Vulnerabilities > Arubanetworks > Arubaos > Critical

DATE CVE VULNERABILITY TITLE RISK
2017-10-04 CVE-2017-14491 Out-of-bounds Write vulnerability in multiple products
Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted DNS response.
9.8
2009-08-21 CVE-2008-7023 Cryptographic Issues vulnerability in Arubanetworks Aruba Mobility Controller and Arubaos
Aruba Mobility Controller running ArubaOS 3.3.1.16, and possibly other versions, installs the same default X.509 certificate for all installations, which allows remote attackers to bypass authentication.
network
low complexity
arubanetworks CWE-310
critical
10.0
2008-05-16 CVE-2008-2273 Remote vulnerability in Arubanetworks Arubaos 3.1/3.2
Unspecified vulnerability in the TACACS authentication component in Aruba Mobility Controller 3.1.x, 3.2.x, and 3.3.x allows remote authenticated users to gain privileges via unknown vectors.
network
low complexity
arubanetworks
critical
9.0