Vulnerabilities > Arubanetworks

DATE CVE VULNERABILITY TITLE RISK
2022-12-12 CVE-2022-37925 Cross-site Scripting vulnerability in Arubanetworks Edgeconnect Enterprise
A vulnerability within the web-based management interface of Aruba EdgeConnect Enterprise could allow a remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the interface.
network
low complexity
arubanetworks CWE-79
6.1
2022-12-12 CVE-2022-37926 Cross-site Scripting vulnerability in Arubanetworks Edgeconnect Enterprise
A vulnerability within the web-based management interface of EdgeConnect Enterprise could allow a remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface by uploading a specially crafted file.
network
low complexity
arubanetworks CWE-79
5.4
2022-12-12 CVE-2022-43518 Path Traversal vulnerability in Arubanetworks Edgeconnect Enterprise
An authenticated path traversal vulnerability exists in the Aruba EdgeConnect Enterprise web interface.
network
low complexity
arubanetworks CWE-22
6.5
2022-12-12 CVE-2022-43541 Unspecified vulnerability in Arubanetworks Edgeconnect Enterprise
Vulnerabilities in the Aruba EdgeConnect Enterprise command line interface allow remote authenticated users to run arbitrary commands on the underlying host.
network
low complexity
arubanetworks
7.2
2022-12-12 CVE-2022-43542 Unspecified vulnerability in Arubanetworks Edgeconnect Enterprise
Vulnerabilities in the Aruba EdgeConnect Enterprise command line interface allow remote authenticated users to run arbitrary commands on the underlying host.
network
low complexity
arubanetworks
8.8
2022-12-12 CVE-2022-44532 Path Traversal vulnerability in Arubanetworks Edgeconnect Enterprise
An authenticated path traversal vulnerability exists in the Aruba EdgeConnect Enterprise command line interface.
network
low complexity
arubanetworks CWE-22
6.5
2022-12-12 CVE-2022-44533 Unspecified vulnerability in Arubanetworks Edgeconnect Enterprise
A vulnerability in the Aruba EdgeConnect Enterprise web management interface allows remote authenticated users to run arbitrary commands on the underlying host.
network
low complexity
arubanetworks
7.2
2022-12-08 CVE-2022-37916 Unspecified vulnerability in Arubanetworks Airwave
Vulnerabilities in the AirWave Management Platform web-based management interface exist which expose some URLs to a lack of proper access controls.
network
low complexity
arubanetworks
8.1
2022-12-08 CVE-2022-37917 Unspecified vulnerability in Arubanetworks Airwave
Vulnerabilities in the AirWave Management Platform web-based management interface exist which expose some URLs to a lack of proper access controls.
network
low complexity
arubanetworks
8.1
2022-12-08 CVE-2022-37918 Unspecified vulnerability in Arubanetworks Airwave
Vulnerabilities in the AirWave Management Platform web-based management interface exist which expose some URLs to a lack of proper access controls.
network
low complexity
arubanetworks
8.1