Vulnerabilities > Arubanetworks > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-02-27 | CVE-2024-26300 | Unspecified vulnerability in Arubanetworks Clearpass Policy Manager A vulnerability in the guest interface of ClearPass Policy Manager could allow an authenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface. | 4.8 |
2024-02-27 | CVE-2024-26301 | Unspecified vulnerability in Arubanetworks Clearpass Policy Manager A vulnerability in the web-based management interface of ClearPass Policy Manager could allow a remote attacker authenticated with low privileges to access sensitive information. | 6.5 |
2024-02-27 | CVE-2024-26299 | Unspecified vulnerability in Arubanetworks Clearpass Policy Manager A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an authenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface. | 4.8 |
2023-11-14 | CVE-2023-45627 | An authenticated Denial-of-Service (DoS) vulnerability exists in the CLI service. | 6.5 |
2023-10-25 | CVE-2023-43508 | Incorrect Authorization vulnerability in Arubanetworks Clearpass Policy Manager Vulnerabilities in the web-based management interface of ClearPass Policy Manager allow an attacker with read-only privileges to perform actions that change the state of the ClearPass Policy Manager instance. | 6.5 |
2023-10-25 | CVE-2023-43509 | Unspecified vulnerability in Arubanetworks Clearpass Policy Manager A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an unauthenticated remote attacker to send notifications to computers that are running ClearPass OnGuard. | 5.8 |
2023-10-25 | CVE-2023-43510 | Command Injection vulnerability in Arubanetworks Clearpass Policy Manager A vulnerability in the ClearPass Policy Manager web-based management interface allows remote authenticated users to run arbitrary commands on the underlying host. | 6.3 |
2023-10-17 | CVE-2023-4896 | Unspecified vulnerability in Arubanetworks Airwave A vulnerability exists which allows an authenticated attacker to access sensitive information on the AirWave Management Platform web-based management interface. | 6.5 |
2023-09-06 | CVE-2023-38484 | Code Injection vulnerability in Arubanetworks Arubaos Vulnerabilities exist in the BIOS implementation of Aruba 9200 and 9000 Series Controllers and Gateways that could allow an attacker to execute arbitrary code early in the boot sequence. | 6.4 |
2023-09-06 | CVE-2023-38485 | Out-of-bounds Write vulnerability in Arubanetworks Arubaos Vulnerabilities exist in the BIOS implementation of Aruba 9200 and 9000 Series Controllers and Gateways that could allow an attacker to execute arbitrary code early in the boot sequence. | 6.4 |