Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
arubanetworks airwave vulnerabilities and exploits
(subscribe to this query)
7.2
CVSSv3
CVE-2019-5323
There are command injection vulnerabilities present in the AirWave application. Certain input fields controlled by an administrative user are not properly sanitized before being parsed by AirWave. If conditions are met, an attacker can obtain command execution on the host.
Arubanetworks Airwave
8.1
CVSSv3
CVE-2022-37918
Vulnerabilities in the AirWave Management Platform web-based management interface exist which expose some URLs to a lack of proper access controls. These vulnerabilities could allow a remote attacker with limited privileges to gain access to sensitive information and/or change ne...
Arubanetworks Airwave
7.5
CVSSv3
CVE-2021-25154
A remote escalation of privilege vulnerability exists in Aruba AirWave Management Platform version(s) before 8.2.12.1. Aruba has released patches for AirWave Management Platform that address this security vulnerability.
Arubanetworks Airwave
8.8
CVSSv3
CVE-2021-25167
A remote unauthorized access vulnerability exists in Aruba AirWave Management Platform version(s) before 8.2.12.1. Aruba has released patches for AirWave Management Platform that address this security vulnerability.
Arubanetworks Airwave
NA
CVE-2014-8368
The web interface in Aruba Networks AirWave prior to 7.7.14 and 8.x prior to 8.0.5 allows remote authenticated users to gain privileges and execute arbitrary commands via unspecified vectors.
Arubanetworks Airwave
8.8
CVSSv3
CVE-2021-26960
A remote unauthenticated cross-site request forgery (csrf) vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.12.0. A vulnerability in the AirWave web-based management interface could allow an unauthenticated remote malicious user to conduct a CSRF a...
Arubanetworks Airwave
6.3
CVSSv3
CVE-2021-26971
A remote authenticated arbitrary command execution vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.12.0. Vulnerabilities in the AirWave web-base management interface could allow remote authenticated users to run arbitrary commands on the underlyin...
Arubanetworks Airwave
7.2
CVSSv3
CVE-2021-26962
A remote authenticated arbitrary command execution vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.12.0. Vulnerabilities in the AirWave CLI could allow remote authenticated users to run arbitrary commands on the underlying host. A successful explo...
Arubanetworks Airwave
6.1
CVSSv3
CVE-2021-26967
A remote reflected cross-site scripting (xss) vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.12.0. A vulnerability in the web-based management interface of AirWave could allow a remote malicious user to conduct a reflected cross-site scripting (X...
Arubanetworks Airwave
6.5
CVSSv3
CVE-2021-26969
A remote authenticated authenticated xml external entity (xxe) vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.12.0. Due to improper restrictions on XML entities a vulnerability exists in the web-based management interface of AirWave. A successful...
Arubanetworks Airwave
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4367
CVE-2024-35977
CVE-2023-49335
man-in-the-middle
CVE-2024-4947
CVE-2024-31714
memory leak
SQL
CVE-2024-35994
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
NEXT »