Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
arubanetworks sd-wan - vulnerabilities and exploits
(subscribe to this query)
8.1
CVSSv3
CVE-2023-37431
Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote malicious user to conduct SQL injection attacks against the EdgeConnect SD-WAN Orchestrator instance. An attacker could exploit these vulnerabilit...
Arubanetworks Edgeconnect Sd-wan Orchestrator 9.3.0
Arubanetworks Edgeconnect Sd-wan Orchestrator
8.1
CVSSv3
CVE-2023-37432
Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote malicious user to conduct SQL injection attacks against the EdgeConnect SD-WAN Orchestrator instance. An attacker could exploit these vulnerabilit...
Arubanetworks Edgeconnect Sd-wan Orchestrator 9.3.0
Arubanetworks Edgeconnect Sd-wan Orchestrator
8.1
CVSSv3
CVE-2023-37433
Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote malicious user to conduct SQL injection attacks against the EdgeConnect SD-WAN Orchestrator instance. An attacker could exploit these vulnerabilit...
Arubanetworks Edgeconnect Sd-wan Orchestrator 9.3.0
Arubanetworks Edgeconnect Sd-wan Orchestrator
8.1
CVSSv3
CVE-2023-37434
Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote malicious user to conduct SQL injection attacks against the EdgeConnect SD-WAN Orchestrator instance. An attacker could exploit these vulnerabilit...
Arubanetworks Edgeconnect Sd-wan Orchestrator 9.3.0
Arubanetworks Edgeconnect Sd-wan Orchestrator
6.1
CVSSv3
CVE-2023-37439
Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote malicious user to conduct SQL injection attacks against the EdgeConnect SD-WAN Orchestrator instance. An attacker could exploit these vulnerabilit...
Arubanetworks Edgeconnect Sd-wan Orchestrator
Arubanetworks Edgeconnect Sd-wan Orchestrator 9.3.0
7.2
CVSSv3
CVE-2023-37428
A vulnerability in the EdgeConnect SD-WAN Orchestrator web-based management interface allows remote authenticated users to run arbitrary commands on the underlying host. A successful exploit could allow an malicious user to execute arbitrary commands as root on the underlying ope...
Arubanetworks Edgeconnect Sd-wan Orchestrator 9.3.0
Arubanetworks Edgeconnect Sd-wan Orchestrator
9.8
CVSSv3
CVE-2020-24634
An attacker is able to remotely inject arbitrary commands by sending especially crafted packets destined to the PAPI (Aruba Networks AP Management protocol) UDP port (8211) of access-pointsor controllers in Aruba 9000 Gateway; Aruba 7000 Series Mobility Controllers; Aruba 7200 Se...
Arubanetworks Arubaos
Arubanetworks Sd-wan
7.2
CVSSv3
CVE-2020-24637
Two vulnerabilities in ArubaOS GRUB2 implementation allows for an malicious user to bypass secureboot. Successful exploitation of this vulnerability this could lead to remote compromise of system integrity by allowing an malicious user to load an untrusted or modified kernel in A...
Arubanetworks Arubaos
Arubanetworks Sd-wan
9.8
CVSSv3
CVE-2023-22748
There are multiple command injection vulnerabilities that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba Networks access point management protocol) UDP port (8211). Successful exploitation of these vulnerabili...
Arubanetworks Arubaos
Arubanetworks Sd-wan
9.8
CVSSv3
CVE-2023-22749
There are multiple command injection vulnerabilities that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba Networks access point management protocol) UDP port (8211). Successful exploitation of these vulnerabili...
Arubanetworks Arubaos
Arubanetworks Sd-wan
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-30310
CVE-2024-21683
CVE-2024-22187
chrome
deserialization
XPath injection
CVE-2024-27842
denial of service
CVE-2024-24851
google
CVE-2024-35400
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »