Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
airwave vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2015-2201
Aruba AirWave prior to 7.7.14.2 and 8.x prior to 8.0.7 allows VisualRF remote OS command execution and file disclosure by administrative users.
Hp Airwave
Arubanetworks Airwave
NA
CVE-2015-2202
Aruba AirWave prior to 7.7.14.2 and 8.x prior to 8.0.7 allows administrative users to escalate privileges to root on the underlying OS.
Hp Airwave
Arubanetworks Airwave
7.6
CVSSv2
CVE-2017-8946
A Remote Code Execution vulnerability in HPE Aruba AirWave Glass version v1.0.0 and 1.0.1 was found.
Hp Aruba Airwave Glass 1.0.1
Hp Aruba Airwave Glass 1.0.0
9
CVSSv2
CVE-2014-8368
The web interface in Aruba Networks AirWave prior to 7.7.14 and 8.x prior to 8.0.5 allows remote authenticated users to gain privileges and execute arbitrary commands via unspecified vectors.
Arubanetworks Airwave
NA
CVE-2022-37917
Vulnerabilities in the AirWave Management Platform web-based management interface exist which expose some URLs to a lack of proper access controls. These vulnerabilities could allow a remote attacker with limited privileges to gain access to sensitive information and/or change ne...
Arubanetworks Airwave
5.5
CVSSv2
CVE-2021-26969
A remote authenticated authenticated xml external entity (xxe) vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.12.0. Due to improper restrictions on XML entities a vulnerability exists in the web-based management interface of AirWave. A successful...
Arubanetworks Airwave
6.5
CVSSv2
CVE-2021-26970
A remote authenticated arbitrary command execution vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.12.0. Vulnerabilities in the AirWave web-base management interface could allow remote authenticated users to run arbitrary commands on the underlyin...
Arubanetworks Airwave
6.5
CVSSv2
CVE-2021-26971
A remote authenticated arbitrary command execution vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.12.0. Vulnerabilities in the AirWave web-base management interface could allow remote authenticated users to run arbitrary commands on the underlyin...
Arubanetworks Airwave
4.3
CVSSv2
CVE-2016-8527
Aruba Airwave all versions up to, but not including, 8.2.3.1 is vulnerable to a reflected cross-site scripting (XSS). The vulnerability is present in the VisualRF component of AirWave. By exploiting this vulnerability, an attacker who can trick a logged-in AirWave administrative ...
Hp Airwave
1 EDB exploit
6.5
CVSSv2
CVE-2019-5323
There are command injection vulnerabilities present in the AirWave application. Certain input fields controlled by an administrative user are not properly sanitized before being parsed by AirWave. If conditions are met, an attacker can obtain command execution on the host.
Arubanetworks Airwave
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-21987
buffer overflow
CVE-2024-28890
CVE-2024-27574
CVE-2024-27347
CVE-2024-31450
privilege
SSTI
CVE-2024-31666
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »