Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
arubanetworks airwave vulnerabilities and exploits
(subscribe to this query)
7.2
CVSSv3
CVE-2015-2201
Aruba AirWave prior to 7.7.14.2 and 8.x prior to 8.0.7 allows VisualRF remote OS command execution and file disclosure by administrative users.
Hp Airwave
Arubanetworks Airwave
7.2
CVSSv3
CVE-2015-2202
Aruba AirWave prior to 7.7.14.2 and 8.x prior to 8.0.7 allows administrative users to escalate privileges to root on the underlying OS.
Hp Airwave
Arubanetworks Airwave
8.8
CVSSv3
CVE-2021-26960
A remote unauthenticated cross-site request forgery (csrf) vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.12.0. A vulnerability in the AirWave web-based management interface could allow an unauthenticated remote malicious user to conduct a CSRF a...
Arubanetworks Airwave
7.2
CVSSv3
CVE-2021-26962
A remote authenticated arbitrary command execution vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.12.0. Vulnerabilities in the AirWave CLI could allow remote authenticated users to run arbitrary commands on the underlying host. A successful explo...
Arubanetworks Airwave
7.1
CVSSv3
CVE-2021-26964
A remote authentication restriction bypass vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.12.0. A vulnerability in the AirWave web-based management interface could allow an authenticated remote malicious user to improperly access and modify devic...
Arubanetworks Airwave
6.5
CVSSv3
CVE-2021-26965
A remote authenticated sql injection vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.12.0. Multiple vulnerabilities in the API of AirWave could allow an authenticated remote malicious user to conduct SQL injection attacks against the AirWave insta...
Arubanetworks Airwave
6.1
CVSSv3
CVE-2021-26967
A remote reflected cross-site scripting (xss) vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.12.0. A vulnerability in the web-based management interface of AirWave could allow a remote malicious user to conduct a reflected cross-site scripting (X...
Arubanetworks Airwave
4.8
CVSSv3
CVE-2021-26968
A remote authenticated stored cross-site scripting (xss) vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.12.0. A vulnerability in the web-based management interface of AirWave could allow an authenticated remote malicious user to conduct a stored ...
Arubanetworks Airwave
6.5
CVSSv3
CVE-2021-26969
A remote authenticated authenticated xml external entity (xxe) vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.12.0. Due to improper restrictions on XML entities a vulnerability exists in the web-based management interface of AirWave. A successful...
Arubanetworks Airwave
6.3
CVSSv3
CVE-2021-26970
A remote authenticated arbitrary command execution vulnerability exists in Aruba AirWave Management Platform version(s): before 8.2.12.0. Vulnerabilities in the AirWave web-base management interface could allow remote authenticated users to run arbitrary commands on the underlyin...
Arubanetworks Airwave
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-32976
CVE-2024-33557
CVE-2024-36801
CVE-2024-35654
authentication bypass
CVE-2024-24919
CSRF
code execution
CVE-2024-27348
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
NEXT »