Arubanetworks

Arubaos

195 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.34%
  • Veröffentlicht 11.12.2020 02:15:10
  • Zuletzt bearbeitet 21.11.2024 05:15:17

There are multiple buffer overflow vulnerabilities that could lead to unauthenticated remote code execution by sending especially crafted packets destined to the PAPI (Aruba Networks AP management protocol) UDP port (8211) of access-points or control...

Exploit
  • EPSS 0.97%
  • Veröffentlicht 31.01.2020 20:15:10
  • Zuletzt bearbeitet 21.11.2024 02:47:39

Multiple vulnerabilities exists in Aruba Instate before 4.1.3.0 and 4.2.3.1 due to insufficient validation of user-supplied input and insufficient checking of parameters, which could allow a malicious user to bypass security restrictions, obtain sens...

Exploit
  • EPSS 2.17%
  • Veröffentlicht 31.01.2020 20:15:10
  • Zuletzt bearbeitet 21.11.2024 02:47:39

A vulnerability exists in the Aruba AirWave Management Platform 8.x prior to 8.2 in the management interface of an underlying system component called RabbitMQ, which could let a malicious user obtain sensitive information. This interface listens on T...

  • EPSS 0.36%
  • Veröffentlicht 13.09.2019 17:15:12
  • Zuletzt bearbeitet 21.11.2024 04:44:43

Some web components in the ArubaOS software are vulnerable to HTTP Response splitting (CRLF injection) and Reflected XSS. An attacker would be able to accomplish this by sending certain URL parameters that would trigger this vulnerability.

  • EPSS 1.82%
  • Veröffentlicht 13.09.2019 17:15:12
  • Zuletzt bearbeitet 21.11.2024 04:44:44

A command injection vulnerability is present in the web management interface of ArubaOS that permits an authenticated user to execute arbitrary commands on the underlying operating system. A malicious administrator could use this ability to install b...

Exploit
  • EPSS 1.94%
  • Veröffentlicht 13.09.2019 17:15:10
  • Zuletzt bearbeitet 21.11.2024 04:11:37

A remote code execution vulnerability is present in network-listening components in some versions of ArubaOS. An attacker with the ability to transmit specially-crafted IP traffic to a mobility controller could exploit this vulnerability and cause a ...

  • EPSS 0.24%
  • Veröffentlicht 07.12.2018 21:29:01
  • Zuletzt bearbeitet 21.11.2024 04:11:37

A vulnerability exists in the firmware of embedded BLE radios that are part of some Aruba Access points. An attacker who is able to exploit the vulnerability could install new, potentially malicious firmware into the AP's BLE radio and could then gai...

Exploit
  • EPSS 60.19%
  • Veröffentlicht 04.10.2017 01:29:02
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted DNS response.

  • EPSS 0.25%
  • Veröffentlicht 24.03.2015 17:59:05
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The "RAP console" feature in ArubaOS 5.x through 6.2.x, 6.3.x before 6.3.1.15, and 6.4.x before 6.4.2.4 on Aruba access points in Remote Access Point (AP) mode allows remote attackers to execute arbitrary commands via unspecified vectors.

  • EPSS 0.19%
  • Veröffentlicht 08.10.2014 01:55:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Unspecified vulnerability in administrative interfaces in ArubaOS 6.3.1.11, 6.3.1.11-FIPS, 6.4.2.1, and 6.4.2.1-FIPS on Aruba controllers allows remote attackers to bypass authentication, and obtain potentially sensitive information or add guest acco...