Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2740▼ 483 respecto a la semana anterior
Críticas / altas1302▼ 188 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
307 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.5) | 0.99% | — | Arubanetworks Sd-wanArubanetworks ArubaosSiemens Scalance W1750d Firmware | 7/9/2021 | 17/6/2026 | A remote path traversal vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.0-2.2.0.4; Prior to 8.7.1.3, 8.6.0.9, 8.5.0.12, 8.3.0.16, 6.5.4.19, 6.4.4.25. Aruba has released patches for Aruba SD-WAN Software and Gateways and ArubaOS that address… | |
| Modificada | Media (6.5) | 1.1% | — | Arubanetworks ArubaosSiemens Scalance W1750d Firmware | 7/9/2021 | 17/6/2026 | A remote path traversal vulnerability was discovered in Aruba Operating System Software version(s): Prior to 8.8.0.1, 8.7.1.4, 8.6.0.11, 8.5.0.13. Aruba has released patches for ArubaOS that address this security vulnerability. | |
| Modificada | Alta (8.1) | 0.40% | — | Arubanetworks Sd-wanArubanetworks ArubaosSiemens Scalance W1750d Firmware | 7/9/2021 | 17/6/2026 | A remote cross-site request forgery (csrf) vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.8.0.1, 8.7.1.2, 8.6.0.8, 8.5.0.12, 8.3.0.15. Aruba has released patches for Aruba SD-WAN Software and Gateways and ArubaOS that… | |
| Modificada | Alta (7.2) | 3.1% | — | Arubanetworks ArubaosSiemens Scalance W1750d Firmware | 7/9/2021 | 17/6/2026 | A remote arbitrary command execution vulnerability was discovered in Aruba Operating System Software version(s): Prior to 8.7.1.2, 8.6.0.8, 8.5.0.12, 8.3.0.16. Aruba has released patches for ArubaOS that address this security vulnerability. | |
| Modificada | Alta (7.2) | 3.1% | — | Arubanetworks ArubaosSiemens Scalance W1750d Firmware | 7/9/2021 | 17/6/2026 | A remote arbitrary command execution vulnerability was discovered in Aruba Operating System Software version(s): Prior to 8.7.1.2, 8.6.0.8, 8.5.0.12, 8.3.0.16. Aruba has released patches for ArubaOS that address this security vulnerability. | |
| Modificada | Alta (7.2) | 3.1% | — | Arubanetworks Sd-wanArubanetworks ArubaosSiemens Scalance W1750d Firmware | 7/9/2021 | 17/6/2026 | A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.7.1.4, 8.6.0.9, 8.5.0.13, 8.3.0.16, 6.5.4.20, 6.4.4.25. Aruba has released patches for Aruba SD-WAN Software and Gateways and ArubaOS… | |
| Modificada | Alta (7.2) | 3.1% | — | Arubanetworks Sd-wanArubanetworks ArubaosSiemens Scalance W1750d Firmware | 7/9/2021 | 17/6/2026 | A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.7.1.4, 8.6.0.9, 8.5.0.13, 8.3.0.16, 6.5.4.20, 6.4.4.25. Aruba has released patches for Aruba SD-WAN Software and Gateways and ArubaOS… | |
| Modificada | Alta (7.2) | 3.1% | — | Arubanetworks Sd-wanArubanetworks ArubaosSiemens Scalance W1750d Firmware | 7/9/2021 | 17/6/2026 | A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.7.1.4, 8.6.0.9, 8.5.0.13, 8.3.0.16, 6.5.4.20, 6.4.4.25. Aruba has released patches for Aruba SD-WAN Software and Gateways and ArubaOS… | |
| Modificada | Alta (7.2) | 2.9% | — | Arubanetworks Sd-wanArubanetworks Arubaos | 7/9/2021 | 17/6/2026 | A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.7.1.4, 8.6.0.9, 8.5.0.13, 8.3.0.16, 6.5.4.20, 6.4.4.25. Aruba has released patches for Aruba SD-WAN Software and Gateways and ArubaOS… | |
| Modificada | Alta (7.2) | 3.1% | — | Arubanetworks Sd-wanArubanetworks ArubaosSiemens Scalance W1750d Firmware | 7/9/2021 | 17/6/2026 | A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.6; Prior to 8.7.1.4, 8.6.0.7, 8.5.0.12, 8.3.0.16. Aruba has released patches for Aruba SD-WAN Software and Gateways and ArubaOS that address this… | |
| Modificada | Alta (7.2) | 3.1% | — | Arubanetworks Sd-wanArubanetworks ArubaosSiemens Scalance W1750d Firmware | 7/9/2021 | 17/6/2026 | A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.6; Prior to 8.7.1.4, 8.6.0.7, 8.5.0.12, 8.3.0.16. Aruba has released patches for Aruba SD-WAN Software and Gateways and ArubaOS that address this… | |
| Modificada | Crítica (9.8) | 2.4% | — | Arubanetworks Sd-wanArubanetworks ArubaosSiemens Scalance W1750d Firmware | 7/9/2021 | 17/6/2026 | A remote buffer overflow vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.7.1.2, 8.6.0.8, 8.5.0.12, 8.3.0.15. Aruba has released patches for Aruba SD-WAN Software and Gateways and ArubaOS that address this security… | |
| Modificada | Media (6.5) | 0.39% | — | Arubanetworks ArubaosSiemens Scalance W1750d Firmware | 7/9/2021 | 17/6/2026 | A remote cross-site request forgery (csrf) vulnerability was discovered in Aruba Operating System Software version(s): 6.x.x.x: all versions, 8.x.x.x: all versions prior to 8.8.0.0. Aruba has released patches for ArubaOS that address this security vulnerability. | |
| Modificada | Alta (7.2) | 1.6% | — | Arubanetworks ArubaosArubanetworks Sd-wan | 11/12/2020 | 17/6/2026 | Two vulnerabilities in ArubaOS GRUB2 implementation allows for an attacker to bypass secureboot. Successful exploitation of this vulnerability this could lead to remote compromise of system integrity by allowing an attacker to load an untrusted or modified kernel in Aruba 9000 Gateway; Aruba 7000 Series Mobility… | |
| Modificada | Crítica (9.8) | 2.1% | — | Arubanetworks ArubaosArubanetworks Sd-wan | 11/12/2020 | 17/6/2026 | An attacker is able to remotely inject arbitrary commands by sending especially crafted packets destined to the PAPI (Aruba Networks AP Management protocol) UDP port (8211) of access-pointsor controllers in Aruba 9000 Gateway; Aruba 7000 Series Mobility Controllers; Aruba 7200 Series Mobility Controllers version(s):… | |
| Modificada | Crítica (9.8) | 5.1% | — | Arubanetworks ArubaosArubanetworks Sd-wan | 11/12/2020 | 17/6/2026 | There are multiple buffer overflow vulnerabilities that could lead to unauthenticated remote code execution by sending especially crafted packets destined to the PAPI (Aruba Networks AP management protocol) UDP port (8211) of access-points or controllers in Aruba 9000 Gateway; Aruba 7000 Series Mobility Controllers;… | |
| Modificada | Alta (7.5) | 2.7% | — | Arubanetworks AirwaveArubanetworks Aruba InstantArubanetworks Arubaos | 31/1/2020 | 17/6/2026 | A vulnerability exists in the Aruba AirWave Management Platform 8.x prior to 8.2 in the management interface of an underlying system component called RabbitMQ, which could let a malicious user obtain sensitive information. This interface listens on TCP port 15672 and 55672 | |
| Modificada | Crítica (9.8) | 5.1% | — | Arubanetworks AirwaveArubanetworks Aruba InstantArubanetworks ArubaosSiemens Scalance W1750d Firmware | 31/1/2020 | 17/6/2026 | Multiple vulnerabilities exists in Aruba Instate before 4.1.3.0 and 4.2.3.1 due to insufficient validation of user-supplied input and insufficient checking of parameters, which could allow a malicious user to bypass security restrictions, obtain sensitive information, perform unauthorized actions and execute arbitrary… | |
| Modificada | Alta (7.2) | 2.2% | — | Arubanetworks Arubaos | 13/9/2019 | 17/6/2026 | A command injection vulnerability is present in the web management interface of ArubaOS that permits an authenticated user to execute arbitrary commands on the underlying operating system. A malicious administrator could use this ability to install backdoors or change system configuration in a way that would not be… | |
| Modificada | Media (6.1) | 0.64% | — | Arubanetworks Arubaos | 13/9/2019 | 17/6/2026 | Some web components in the ArubaOS software are vulnerable to HTTP Response splitting (CRLF injection) and Reflected XSS. An attacker would be able to accomplish this by sending certain URL parameters that would trigger this vulnerability. | |
| Modificada | Crítica (9.8) | 5.9% | — | Arubanetworks Arubaos | 13/9/2019 | 17/6/2026 | A remote code execution vulnerability is present in network-listening components in some versions of ArubaOS. An attacker with the ability to transmit specially-crafted IP traffic to a mobility controller could exploit this vulnerability and cause a process crash or to execute arbitrary code within the underlying… | |
| Modificada | Alta (7.5) | 0.64% | — | Arubanetworks ArubaosArubanetworks 203rp FirmwareArubanetworks 203r FirmwareArubanetworks Ap-300 Series Access Points Firmware+1 | 7/12/2018 | 17/6/2026 | A vulnerability exists in the firmware of embedded BLE radios that are part of some Aruba Access points. An attacker who is able to exploit the vulnerability could install new, potentially malicious firmware into the AP's BLE radio and could then gain access to the AP's console port. This vulnerability is applicable… | |
| Modificada | Alta (7.5) | 3.6% | — | HPE Arubaos | 6/8/2018 | 17/6/2026 | Multiple memory corruption flaws are present in ArubaOS which could allow an unauthenticated user to crash ArubaOS processes. With sufficient time and effort, it is possible these vulnerabilities could lead to the ability to execute arbitrary code - remote code execution has not yet been confirmed. | |
| Modificada | Crítica (9.8) | 5.7% | — | HP Arubaos | 6/8/2018 | 17/6/2026 | ArubaOS, all versions prior to 6.3.1.25, 6.4 prior to 6.4.4.16, 6.5.x prior to 6.5.1.9, 6.5.2, 6.5.3 prior to 6.5.3.3, 6.5.4 prior to 6.5.4.2, 8.x prior to 8.1.0.4 FIPS and non-FIPS versions of software are both affected equally is vulnerable to unauthenticated arbitrary file access. An unauthenticated user with… | |
| Modificada | Crítica (9.8) | 85% | 💥 Exploit | Thekelleys DnsmasqRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Workstation+17 | 4/10/2017 | 17/6/2026 | Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted DNS response. |