CVE-2023-35979
- EPSS 0.12%
- Published 05.07.2023 15:15:09
- Last modified 21.11.2024 08:09:06
There is an unauthenticated buffer overflow vulnerability in the process controlling the ArubaOS web-based management interface. Successful exploitation of this vulnerability results in a Denial-of-Service (DoS) condition affecting the web-based mana...
CVE-2023-22787
- EPSS 0.19%
- Published 08.05.2023 15:15:10
- Last modified 21.11.2024 07:45:25
An unauthenticated Denial of Service (DoS) vulnerability exists in a service accessed via the PAPI protocol provided by Aruba InstantOS and ArubaOS 10. Successful exploitation of this vulnerability results in the ability to interrupt the normal opera...
CVE-2023-22788
- EPSS 0.3%
- Published 08.05.2023 15:15:10
- Last modified 28.01.2025 21:15:13
Multiple authenticated command injection vulnerabilities exist in the Aruba InstantOS and ArubaOS 10 command line interface. Successful exploitation of these vulnerabilities result in the ability to execute arbitrary commands as a privileged user on ...
CVE-2023-22789
- EPSS 0.3%
- Published 08.05.2023 15:15:10
- Last modified 31.01.2025 18:15:32
Multiple authenticated command injection vulnerabilities exist in the Aruba InstantOS and ArubaOS 10 command line interface. Successful exploitation of these vulnerabilities result in the ability to execute arbitrary commands as a privileged user on ...
CVE-2023-22790
- EPSS 0.3%
- Published 08.05.2023 15:15:10
- Last modified 31.01.2025 18:15:32
Multiple authenticated command injection vulnerabilities exist in the Aruba InstantOS and ArubaOS 10 command line interface. Successful exploitation of these vulnerabilities result in the ability to execute arbitrary commands as a privileged user on ...
CVE-2023-22791
- EPSS 0.13%
- Published 08.05.2023 15:15:10
- Last modified 21.11.2024 07:45:26
A vulnerability exists in Aruba InstantOS and ArubaOS 10 where an edge-case combination of network configuration, a specific WLAN environment and an attacker already possessing valid user credentials on that WLAN can lead to sensitive information bei...
CVE-2023-22771
- EPSS 0.08%
- Published 01.03.2023 08:15:14
- Last modified 21.11.2024 07:45:23
An insufficient session expiration vulnerability exists in the ArubaOS command line interface. Successful exploitation of this vulnerability allows an attacker to keep a session running on an affected device after the removal of the impacted account ...
CVE-2023-22772
- EPSS 0.4%
- Published 01.03.2023 08:15:14
- Last modified 07.03.2025 21:15:14
An authenticated path traversal vulnerability exists in the ArubaOS web-based management interface. Successful exploitation of this vulnerability results in the ability to delete arbitrary files in the underlying operating system.
CVE-2023-22773
- EPSS 0.42%
- Published 01.03.2023 08:15:14
- Last modified 07.03.2025 21:15:14
Authenticated path traversal vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities result in the ability to delete arbitrary files in the underlying operating system.
CVE-2023-22774
- EPSS 0.42%
- Published 01.03.2023 08:15:14
- Last modified 07.03.2025 21:15:14
Authenticated path traversal vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities result in the ability to delete arbitrary files in the underlying operating system.