Vulnerabilities > Arubanetworks > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-03-01 CVE-2023-22756 Classic Buffer Overflow vulnerability in Arubanetworks Arubaos and Sd-Wan
There are buffer overflow vulnerabilities in multiple underlying operating system processes that could lead to unauthenticated remote code execution by sending specially crafted packets via the PAPI protocol.
network
low complexity
arubanetworks CWE-120
critical
9.8
2023-03-01 CVE-2023-22757 Classic Buffer Overflow vulnerability in Arubanetworks Arubaos and Sd-Wan
There are buffer overflow vulnerabilities in multiple underlying operating system processes that could lead to unauthenticated remote code execution by sending specially crafted packets via the PAPI protocol.
network
low complexity
arubanetworks CWE-120
critical
9.8
2022-12-12 CVE-2022-37897 OS Command Injection vulnerability in Arubanetworks Arubaos and Sd-Wan
There is a command injection vulnerability that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba Networks AP management protocol) UDP port (8211).
network
low complexity
arubanetworks CWE-78
critical
9.8
2022-10-28 CVE-2022-37913 Unspecified vulnerability in Arubanetworks Aruba Edgeconnect Enterprise Orchestrator
Vulnerabilities in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow an unauthenticated remote attacker to bypass authentication.
network
low complexity
arubanetworks
critical
9.8
2022-10-28 CVE-2022-37914 Unspecified vulnerability in Arubanetworks Aruba Edgeconnect Enterprise Orchestrator
Vulnerabilities in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow an unauthenticated remote attacker to bypass authentication.
network
low complexity
arubanetworks
critical
9.8
2022-10-28 CVE-2022-37915 Unspecified vulnerability in Arubanetworks Aruba Edgeconnect Enterprise Orchestrator
A vulnerability in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow an unauthenticated remote attacker to run arbitrary commands on the underlying host.
network
low complexity
arubanetworks
critical
9.8
2022-10-07 CVE-2022-37885 Classic Buffer Overflow vulnerability in multiple products
There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba Networks AP management protocol) UDP port (8211).
network
low complexity
arubanetworks siemens CWE-120
critical
9.8
2022-10-07 CVE-2022-37886 Classic Buffer Overflow vulnerability in multiple products
There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba Networks AP management protocol) UDP port (8211).
network
low complexity
arubanetworks siemens CWE-120
critical
9.8
2022-10-07 CVE-2022-37887 Classic Buffer Overflow vulnerability in multiple products
There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba Networks AP management protocol) UDP port (8211).
network
low complexity
arubanetworks siemens CWE-120
critical
9.8
2022-10-07 CVE-2022-37889 Classic Buffer Overflow vulnerability in multiple products
There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba Networks AP management protocol) UDP port (8211).
network
low complexity
arubanetworks siemens CWE-120
critical
9.8