CVE-2025-37184
- EPSS 0.59%
- Veröffentlicht 14.01.2026 16:19:45
- Zuletzt bearbeitet 03.03.2026 18:16:23
A vulnerability exists in an Orchestrator service that could allow an unauthenticated remote attacker to bypass multi-factor authentication requirements. Successful exploitation could allow an attacker to create an admin user account without the nece...
CVE-2025-37183
- EPSS 0.42%
- Veröffentlicht 14.01.2026 16:18:14
- Zuletzt bearbeitet 20.01.2026 18:17:09
Vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to perform SQL injection attacks. Successful exploitation could allow an attacker to execute arbitrary SQL commands...
CVE-2025-37182
- EPSS 0.42%
- Veröffentlicht 14.01.2026 16:17:12
- Zuletzt bearbeitet 20.01.2026 18:17:30
Vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to perform SQL injection attacks. Successful exploitation could allow an attacker to execute arbitrary SQL commands...
CVE-2024-41136
- EPSS 0.91%
- Veröffentlicht 24.07.2024 21:15:11
- Zuletzt bearbeitet 21.11.2024 09:32:18
An authenticated command injection vulnerability exists in the HPE Aruba Networking EdgeConnect SD-WAN gateways Command Line Interface. Successful exploitation of this vulnerability results in the ability to execute arbitrary commands as a privileged...
CVE-2024-41134
- EPSS 0.68%
- Veröffentlicht 24.07.2024 20:15:04
- Zuletzt bearbeitet 15.04.2026 00:35:42
A vulnerability exists in the HPE Aruba Networking EdgeConnect SD-WAN gateway's Command Line Interface that allows remote authenticated users to run arbitrary commands on the underlying host. Successful exploitation of this vulnerability will result ...
CVE-2024-41133
- EPSS 0.75%
- Veröffentlicht 24.07.2024 20:15:04
- Zuletzt bearbeitet 15.04.2026 00:35:42
A vulnerability exists in the HPE Aruba Networking EdgeConnect SD-WAN gateway's Command Line Interface that allows remote authenticated users to run arbitrary commands on the underlying host. Successful exploitation of this vulnerability will result ...
CVE-2024-41135
- EPSS 0.75%
- Veröffentlicht 24.07.2024 20:15:04
- Zuletzt bearbeitet 15.04.2026 00:35:42
A vulnerability exists in the HPE Aruba Networking EdgeConnect SD-WAN gateway's Command Line Interface that allows remote authenticated users to run arbitrary commands on the underlying host. Successful exploitation of this vulnerability will result ...
CVE-2024-33519
- EPSS 0.7%
- Veröffentlicht 24.07.2024 20:15:03
- Zuletzt bearbeitet 15.04.2026 00:35:42
A vulnerability in the web-based management interface of HPE Aruba Networking EdgeConnect SD-WAN gateway could allow an authenticated remote attacker to conduct a server-side prototype pollution attack. Successful exploitation of this vulnerability c...
CVE-2024-22444
- EPSS 0.3%
- Veröffentlicht 24.07.2024 16:15:06
- Zuletzt bearbeitet 21.11.2024 08:56:18
A vulnerability within the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow a remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the interface. A successful exploit could allow an a...
- EPSS 0.54%
- Veröffentlicht 24.07.2024 15:15:12
- Zuletzt bearbeitet 21.11.2024 09:33:16
A vulnerability in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface. A successful ...