CVE-2022-44534
- EPSS 0.39%
- Veröffentlicht 05.01.2023 07:15:14
- Zuletzt bearbeitet 21.11.2024 07:28:05
A vulnerability in the Aruba EdgeConnect Enterprise Orchestrator web-based management interface allows remote authenticated users to run arbitrary commands on the underlying host. A successful exploit could allow an attacker to execute arbitrary comm...
CVE-2022-44535
- EPSS 0.75%
- Veröffentlicht 05.01.2023 07:15:14
- Zuletzt bearbeitet 21.11.2024 07:28:05
A vulnerability in the Aruba EdgeConnect Enterprise Orchestrator web-based management interface allows remote low-privileged authenticated users to escalate their privileges to those of an administrative user. A successful exploit could allow an atta...
CVE-2022-43528
- EPSS 0.08%
- Veröffentlicht 05.01.2023 07:15:12
- Zuletzt bearbeitet 10.04.2025 17:15:35
Under certain configurations, an attacker can login to Aruba EdgeConnect Enterprise Orchestrator without supplying a multi-factor authentication code. Successful exploitation allows an attacker to login using only a username and password and successf...
CVE-2022-43529
- EPSS 0.21%
- Veröffentlicht 05.01.2023 07:15:12
- Zuletzt bearbeitet 10.04.2025 17:15:35
A vulnerability in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow an remote attacker to persist a session after a password reset or similar session clearing event. Successful exploitation of this vulnerabi...
CVE-2022-43523
- EPSS 0.5%
- Veröffentlicht 05.01.2023 07:15:11
- Zuletzt bearbeitet 10.04.2025 16:15:23
Multiple vulnerabilities in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow an authenticated remote attacker to conduct SQL injection attacks against the Aruba EdgeConnect Enterprise Orchestrator instance. ...
CVE-2022-43524
- EPSS 0.33%
- Veröffentlicht 05.01.2023 07:15:11
- Zuletzt bearbeitet 10.04.2025 16:15:24
A vulnerability in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow an authenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface. A s...
CVE-2022-43525
- EPSS 0.23%
- Veröffentlicht 05.01.2023 07:15:11
- Zuletzt bearbeitet 10.04.2025 17:15:35
Multiple vulnerabilities within the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow a remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the interface. A successful explo...
CVE-2022-43526
- EPSS 0.23%
- Veröffentlicht 05.01.2023 07:15:11
- Zuletzt bearbeitet 10.04.2025 17:15:35
Multiple vulnerabilities within the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow a remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the interface. A successful explo...
CVE-2022-43527
- EPSS 0.23%
- Veröffentlicht 05.01.2023 07:15:11
- Zuletzt bearbeitet 10.04.2025 17:15:35
Multiple vulnerabilities within the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow a remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the interface. A successful explo...
CVE-2022-43519
- EPSS 0.98%
- Veröffentlicht 05.01.2023 07:15:10
- Zuletzt bearbeitet 10.04.2025 16:15:23
Multiple vulnerabilities in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow an authenticated remote attacker to conduct SQL injection attacks against the Aruba EdgeConnect Enterprise Orchestrator instance. ...