Arubanetworks
Arubanetworks Aos-cx: vulnerabilidades y CVE
Arubanetworks Aos-cx tiene 12 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE12
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2022-23691 | Media (6.8) | 0.36% | — | 6 sept 2022 | A vulnerability exists in certain AOS-CX switch models which could allow an attacker with access to the recovery console to bypass normal authentication. A successful exploit allows an attacker to bypass system… |
| CVE-2022-23690 | Media (5.3) | 0.85% | — | 6 sept 2022 | A vulnerability in the web-based management interface of AOS-CX could allow a remote unauthenticated attacker to fingerprint the exact version AOS-CX running on the switch. This allows an attacker to retrieve… |
| CVE-2022-23689 | Media (4.3) | 0.32% | — | 6 sept 2022 | Multiple vulnerabilities exist in the processing of packet data by the LLDP service of AOS-CX. Successful exploitation of these vulnerabilities may allow an attacker to impact the availability of the AOS-CX LLDP service… |
| CVE-2022-23688 | Media (4.3) | 0.32% | — | 6 sept 2022 | Multiple vulnerabilities exist in the processing of packet data by the LLDP service of AOS-CX. Successful exploitation of these vulnerabilities may allow an attacker to impact the availability of the AOS-CX LLDP service… |
| CVE-2022-23687 | Media (4.3) | 0.32% | — | 6 sept 2022 | Multiple vulnerabilities exist in the processing of packet data by the LLDP service of AOS-CX. Successful exploitation of these vulnerabilities may allow an attacker to impact the availability of the AOS-CX LLDP service… |
| CVE-2022-23686 | Media (4.3) | 0.32% | — | 6 sept 2022 | Multiple vulnerabilities exist in the processing of packet data by the LLDP service of AOS-CX. Successful exploitation of these vulnerabilities may allow an attacker to impact the availability of the AOS-CX LLDP service… |
| CVE-2022-23684 | Alta (8.8) | 1.2% | — | 6 sept 2022 | A vulnerability in the web-based management interface of AOS-CX could allow a remote authenticated user with read-only privileges to escalate their permissions to those of an administrative user. Successful exploitation… |
| CVE-2022-23683 | Alta (7.2) | 1.7% | — | 6 sept 2022 | Authenticated command injection vulnerabilities exist in the AOS-CX Network Analytics Engine via NAE scripts. Successful exploitation of these vulnerabilities result in the ability to execute arbitrary commands as a… |
| CVE-2022-23682 | Alta (7.8) | 0.60% | — | 6 sept 2022 | Multiple vulnerabilities exist in the AOS-CX command line interface that could lead to authenticated command injection. A successful exploit could allow an attacker to execute arbitrary commands as root on the… |
| CVE-2022-23681 | Alta (7.8) | 0.57% | — | 6 sept 2022 | Multiple vulnerabilities exist in the AOS-CX command line interface that could lead to authenticated command injection. A successful exploit could allow an attacker to execute arbitrary commands as root on the… |
| CVE-2022-23680 | Alta (8.8) | 0.42% | — | 6 sept 2022 | AOS-CX lacks Anti-CSRF protections in place for state-changing operations. This can potentially be exploited by an attacker to execute commands in the context of another user in ArubaOS-CX Switches version(s): AOS-CX… |
| CVE-2022-23679 | Alta (8.8) | 0.42% | — | 6 sept 2022 | AOS-CX lacks Anti-CSRF protections in place for state-changing operations. This can potentially be exploited by an attacker to execute commands in the context of another user in ArubaOS-CX Switches version(s): AOS-CX… |