Vulnerabilities > Arubanetworks

DATE CVE VULNERABILITY TITLE RISK
2024-02-27 CVE-2024-26298 Unspecified vulnerability in Arubanetworks Clearpass Policy Manager
Vulnerabilities in the ClearPass Policy Manager web-based management interface allow remote authenticated users to run arbitrary commands on the underlying host.
network
low complexity
arubanetworks
8.8
2024-02-27 CVE-2024-26299 Unspecified vulnerability in Arubanetworks Clearpass Policy Manager
A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an authenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface.
network
low complexity
arubanetworks
4.8
2023-11-14 CVE-2023-45614 Classic Buffer Overflow vulnerability in multiple products
There are buffer overflow vulnerabilities in the underlying CLI service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's access point management protocol) UDP port (8211).
network
low complexity
arubanetworks hp CWE-120
critical
9.8
2023-11-14 CVE-2023-45615 Classic Buffer Overflow vulnerability in multiple products
There are buffer overflow vulnerabilities in the underlying CLI service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's access point management protocol) UDP port (8211).
network
low complexity
arubanetworks hp CWE-120
critical
9.8
2023-11-14 CVE-2023-45616 Classic Buffer Overflow vulnerability in multiple products
There is a buffer overflow vulnerability in the underlying AirWave client service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's access point management protocol) UDP port (8211).
network
low complexity
arubanetworks hp CWE-120
critical
9.8
2023-11-14 CVE-2023-45617 There are arbitrary file deletion vulnerabilities in the CLI service accessed by PAPI (Aruba's access point management protocol).
network
low complexity
arubanetworks hp
8.2
2023-11-14 CVE-2023-45618 There are arbitrary file deletion vulnerabilities in the AirWave client service accessed by PAPI (Aruba's access point management protocol).
network
low complexity
arubanetworks hp
8.2
2023-11-14 CVE-2023-45619 There is an arbitrary file deletion vulnerability in the RSSI service accessed by PAPI (Aruba's access point management protocol).
network
low complexity
arubanetworks hp
8.2
2023-11-14 CVE-2023-45620 Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the CLI service accessed via the PAPI protocol.
network
low complexity
arubanetworks hp
7.5
2023-11-14 CVE-2023-45621 Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the CLI service accessed via the PAPI protocol.
network
low complexity
arubanetworks hp
7.5