Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
arubanetworks airwave vulnerabilities and exploits
(subscribe to this query)
7.2
CVSSv3
CVE-2015-2201
Aruba AirWave prior to 7.7.14.2 and 8.x prior to 8.0.7 allows VisualRF remote OS command execution and file disclosure by administrative users.
Hp Airwave
Arubanetworks Airwave
7.2
CVSSv3
CVE-2015-2202
Aruba AirWave prior to 7.7.14.2 and 8.x prior to 8.0.7 allows administrative users to escalate privileges to root on the underlying OS.
Hp Airwave
Arubanetworks Airwave
8.8
CVSSv3
CVE-2021-26960
A remote unauthenticated cross-site request forgery (csrf) vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.12.0. A vulnerability in the AirWave web-based management interface could allow an unauthenticated remote malicious user to conduct a CSRF a...
Arubanetworks Airwave
7.2
CVSSv3
CVE-2021-26963
A remote authenticated arbitrary command execution vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.12.0. Vulnerabilities in the AirWave CLI could allow remote authenticated users to run arbitrary commands on the underlying host. A successful explo...
Arubanetworks Airwave
7.2
CVSSv3
CVE-2019-5323
There are command injection vulnerabilities present in the AirWave application. Certain input fields controlled by an administrative user are not properly sanitized before being parsed by AirWave. If conditions are met, an attacker can obtain command execution on the host.
Arubanetworks Airwave
7.2
CVSSv3
CVE-2019-5326
An administrative application user of or application user with write access to Aruba Airwave VisualRF is able to obtain code execution on the AMP platform. This is possible due to the ability to overwrite a file on disk which is subsequently deserialized by the Java application c...
Arubanetworks Airwave
4.8
CVSSv3
CVE-2021-37715
A remote cross-site scripting (XSS) vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.13.0. Aruba has released upgrades for the Aruba AirWave Management Platform that address this security vulnerability.
Arubanetworks Airwave
6.5
CVSSv3
CVE-2023-4896
A vulnerability exists which allows an authenticated malicious user to access sensitive information on the AirWave Management Platform web-based management interface. Successful exploitation allows the malicious user to gain access to some data that could be further exploited to ...
Arubanetworks Airwave
8.8
CVSSv3
CVE-2021-26961
A remote unauthenticated cross-site request forgery (csrf) vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.12.0. A vulnerability in the AirWave web-based management interface could allow an unauthenticated remote malicious user to conduct a CSRF a...
Arubanetworks Airwave
7.2
CVSSv3
CVE-2021-26962
A remote authenticated arbitrary command execution vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.12.0. Vulnerabilities in the AirWave CLI could allow remote authenticated users to run arbitrary commands on the underlying host. A successful explo...
Arubanetworks Airwave
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
remote code execution
CVE-2024-34909
CVE-2024-3317
SSTI
CVE-2024-3400
CVE-2024-30051
wireless
CVE-2024-4622
CVE-2024-4908
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
NEXT »