Vulnerabilities > Arubanetworks > SD WAN
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-12-12 | CVE-2022-37905 | Unspecified vulnerability in Arubanetworks Arubaos and Sd-Wan Vulnerabilities in ArubaOS running on 7xxx series controllers exist that allows an attacker to execute arbitrary code during the boot sequence. | 8.8 |
2022-12-12 | CVE-2022-37906 | Path Traversal vulnerability in Arubanetworks Arubaos and Sd-Wan An authenticated path traversal vulnerability exists in the ArubaOS command line interface. | 8.1 |
2022-12-12 | CVE-2022-37907 | Unspecified vulnerability in Arubanetworks Arubaos and Sd-Wan A vulnerability exists in the ArubaOS bootloader on 7xxx series controllers which can result in a denial of service (DoS) condition on an impacted system. | 7.5 |
2022-12-12 | CVE-2022-37908 | Unspecified vulnerability in Arubanetworks Arubaos and Sd-Wan An authenticated attacker can impact the integrity of the ArubaOS bootloader on 7xxx series controllers. | 6.5 |
2022-12-12 | CVE-2022-37909 | Unspecified vulnerability in Arubanetworks Arubaos and Sd-Wan Aruba has identified certain configurations of ArubaOS that can lead to sensitive information disclosure from the configured ESSIDs. high complexity arubanetworks | 5.3 |
2022-12-12 | CVE-2022-37910 | Classic Buffer Overflow vulnerability in Arubanetworks Arubaos and Sd-Wan A buffer overflow vulnerability exists in the ArubaOS command line interface. | 6.5 |
2022-12-12 | CVE-2022-37911 | XXE vulnerability in Arubanetworks Arubaos and Sd-Wan Due to improper restrictions on XML entities multiple vulnerabilities exist in the command line interface of ArubaOS. | 5.5 |
2022-12-12 | CVE-2022-37912 | OS Command Injection vulnerability in Arubanetworks Arubaos and Sd-Wan Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. | 8.8 |
2021-09-07 | CVE-2021-37716 | Classic Buffer Overflow vulnerability in multiple products A remote buffer overflow vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.7.1.2, 8.6.0.8, 8.5.0.12, 8.3.0.15. | 9.8 |
2021-09-07 | CVE-2021-37717 | Command Injection vulnerability in multiple products A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.6; Prior to 8.7.1.4, 8.6.0.7, 8.5.0.12, 8.3.0.16. | 7.2 |