Vulnerabilities > Arubanetworks > High

DATE CVE VULNERABILITY TITLE RISK
2021-01-15 CVE-2020-24641 Server-Side Request Forgery (SSRF) vulnerability in Arubanetworks Airwave Glass
In Aruba AirWave Glass before 1.3.3, there is a Server-Side Request Forgery vulnerability through an unauthenticated endpoint that if successfully exploited can result in disclosure of sensitive information.
network
low complexity
arubanetworks CWE-918
7.5
2021-01-15 CVE-2020-24638 Unspecified vulnerability in Arubanetworks Airwave Glass
Multiple authenticated remote command executions are possible in Airwave Glass before 1.3.3 via the glassadmin cli.
network
low complexity
arubanetworks
7.2
2020-12-11 CVE-2020-24637 Unspecified vulnerability in Arubanetworks Arubaos
Two vulnerabilities in ArubaOS GRUB2 implementation allows for an attacker to bypass secureboot.
network
low complexity
arubanetworks
7.2
2020-11-04 CVE-2020-7129 Unspecified vulnerability in Arubanetworks Airwave Glass 1.2.1/1.3.0/1.3.1
A remote execution of arbitrary commands vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.
network
low complexity
arubanetworks
7.2
2020-10-26 CVE-2020-7125 Improper Privilege Management vulnerability in Arubanetworks Airwave Glass 1.2.1/1.3.0/1.3.1
A remote escalation of privilege vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.
network
low complexity
arubanetworks CWE-269
8.8
2020-10-26 CVE-2020-24632 Unspecified vulnerability in Arubanetworks Airwave Glass 1.2.1/1.3.0/1.3.1
A remote execution of arbitrary commandss vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.
network
low complexity
arubanetworks
7.2
2020-10-26 CVE-2020-24631 Unspecified vulnerability in Arubanetworks Airwave Glass 1.2.1/1.3.0/1.3.1
A remote execution of arbitrary commands vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.
network
low complexity
arubanetworks
7.2
2020-09-23 CVE-2020-7122 Out-of-bounds Write vulnerability in Arubanetworks products
Two memory corruption vulnerabilities in the Aruba CX Switches Series 6200F, 6300, 6400, 8320, 8325, and 8400 have been found.
network
low complexity
arubanetworks CWE-787
7.5
2020-09-23 CVE-2020-7121 Out-of-bounds Write vulnerability in Arubanetworks products
Two memory corruption vulnerabilities in the Aruba CX Switches Series 6200F, 6300, 6400, 8320, 8325, and 8400 have been found.
network
low complexity
arubanetworks CWE-787
7.5
2020-08-26 CVE-2019-5321 Unspecified vulnerability in Arubanetworks products
Aruba Intelligent Edge Switch Series 2540, 2530, 2930F, 2930M, 2920, 5400R, and 3810M with firmware 16.08.* before 16.08.0009, 16.09.* before 16.09.0007, 16.10.* before 16.10.0003 are vulnerable to Remote Unauthorized Access in the WebUI.
network
low complexity
arubanetworks
8.8