« Volver al listado

Arubanetworks

Arubanetworks Arubaos: vulnerabilidades y CVE

Arubanetworks Arubaos tiene 233 vulnerabilidades publicadas, 65 de ellas en los últimos 12 meses. 45 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE233
Últimos 12 meses65
Críticas45
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2026-44871Alta (8.8)1.4%—12 may 2026
Command injection vulnerabilities exist in the command line interface (CLI) service accessed by the PAPI protocol of AOS-8 and AOS-10 Operating Systems. Successful exploitation of these vulnerabilities could allow an…
CVE-2026-44874Media (4.9)0.51%—12 may 2026
A vulnerability exists in the web-based management interface of an AOS-10 Gateway that could allow an authenticated remote attacker to access sensitive files on the underlying operating system. Successful exploitation…
CVE-2026-44873Media (5.4)0.23%—12 may 2026
A session management vulnerability in AOS-8 allows previously authenticated users to retain network access after their accounts are administratively disabled. Existing sessions are not invalidated when credentials are…
CVE-2026-44872Alta (7.2)1.2%—12 may 2026
A command injection vulnerability exists in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Successful exploitation could allow an authenticated remote attacker to place arbitrary files on the…
CVE-2026-44870Alta (8.8)1.4%—12 may 2026
Command injection vulnerabilities exist in the command line interface (CLI) service accessed by the PAPI protocol of AOS-8 and AOS-10 Operating Systems. Successful exploitation of these vulnerabilities could allow an…
CVE-2026-44869Alta (8.8)1.4%—12 may 2026
Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Successful exploitation of these vulnerabilities could allow an authenticated remote attacker to…
CVE-2026-44868Alta (8.8)1.4%—12 may 2026
Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Successful exploitation of these vulnerabilities could allow an authenticated remote attacker to…
CVE-2026-44867Alta (8.8)1.4%—12 may 2026
Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Successful exploitation of these vulnerabilities could allow an authenticated remote attacker to…
CVE-2026-44866Alta (8.8)1.4%—12 may 2026
Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Successful exploitation of these vulnerabilities could allow an authenticated remote attacker to…
CVE-2026-44865Alta (7.2)1.5%—12 may 2026
Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Successful exploitation of these vulnerabilities could allow an authenticated remote attacker to…
CVE-2026-44864Alta (7.2)0.58%—12 may 2026
SQL injection vulnerabilities exist in several underlying service components accessible through the AOS-8 and AOS-10 command-line interface and management protocol. An authenticated attacker with administrative…
CVE-2026-44863Alta (7.2)0.58%—12 may 2026
SQL injection vulnerabilities exist in several underlying service components accessible through the AOS-8 and AOS-10 command-line interface and management protocol. An authenticated attacker with administrative…
CVE-2026-44862Alta (7.2)0.58%—12 may 2026
SQL injection vulnerabilities exist in several underlying service components accessible through the AOS-8 and AOS-10 command-line interface and management protocol. An authenticated attacker with administrative…
CVE-2026-44861Alta (7.2)0.58%—12 may 2026
SQL injection vulnerabilities exist in several underlying service components accessible through the AOS-8 and AOS-10 command-line interface and management protocol. An authenticated attacker with administrative…
CVE-2026-44860Alta (7.2)0.58%—12 may 2026
SQL injection vulnerabilities exist in several underlying service components accessible through the AOS-8 and AOS-10 command-line interface and management protocol. An authenticated attacker with administrative…
CVE-2026-44859Alta (7.2)0.62%—12 may 2026
Stack-based buffer overflow vulnerabilities exist in several underlying management service components accessed through the command-line interface of the AOS-8 and AOS-10 Operating Systems. An authenticated attacker with…
CVE-2026-44858Alta (7.2)0.62%—12 may 2026
Stack-based buffer overflow vulnerabilities exist in several underlying management service components accessed through the command-line interface of the AOS-8 and AOS-10 Operating Systems. An authenticated attacker with…
CVE-2026-44857Alta (7.2)0.62%—12 may 2026
Stack-based buffer overflow vulnerabilities exist in several underlying management service components accessed through the command-line interface of the AOS-8 and AOS-10 Operating Systems. An authenticated attacker with…
CVE-2026-44856Alta (7.2)0.62%—12 may 2026
Stack-based buffer overflow vulnerabilities exist in several underlying management service components accessed through the command-line interface of the AOS-8 and AOS-10 Operating Systems. An authenticated attacker with…
CVE-2026-44855Alta (7.2)0.62%—12 may 2026
Stack-based buffer overflow vulnerabilities exist in several underlying management service components accessed through the command-line interface of the AOS-8 and AOS-10 Operating Systems. An authenticated attacker with…
CVE-2026-44854Alta (7.2)1.6%—12 may 2026
Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Successful exploitation could allow an authenticated remote attacker to upload arbitrary files to the…
CVE-2026-44853Alta (7.2)1.6%—12 may 2026
Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Successful exploitation could allow an authenticated remote attacker to upload arbitrary files to the…
CVE-2026-44852Alta (7.2)0.61%—12 may 2026
An authenticated remote code execution vulnerability exists in the AOS-8 and AOS-10 web-based management interface. A vulnerability in the certificate download functionality could allow an authenticated remote attacker…
CVE-2026-23827Alta (7.5)0.53%—12 may 2026
A heap-based buffer overflow vulnerability exists in a Network management service of AOS-8 and AOS-10 that could allow an unauthenticated remote attacker to achieve remote code execution. Successful exploitation could…
CVE-2026-23826Alta (7.5)0.40%—12 may 2026
A vulnerability in a network management service of AOS-8 Operating System could allow an unauthenticated remote attacker to exploit this vulnerability by sending specially crafted network packets to the affected device,…
CVE-2026-23825Alta (7.5)0.33%—12 may 2026
Vulnerabilities exist in a protocol-handling component of AOS-8 and AOS-10 Operating Systems. An unauthenticated attacker could exploit these vulnerabilities by sending specially crafted network messages to the affected…
CVE-2026-23824Alta (7.5)0.33%—12 may 2026
Vulnerabilities exist in a protocol-handling component of AOS-8 and AOS-10 Operating Systems. An unauthenticated attacker could exploit these vulnerabilities by sending specially crafted network messages to the affected…
CVE-2026-23823Alta (7.2)0.96%—12 may 2026
A vulnerability in the command line interface of Access Points running AOS-10 could allow an authenticated remote attacker to perform command injection. Successful exploitation could allow an attacker to execute…
CVE-2026-23822Media (5.3)0.26%—12 may 2026
A vulnerability in the XML handling component of AOS-8 DHCP services could allow an unauthenticated remote attacker to trigger a denial-of-service condition. Successful exploitation could allow an attacker to cause…
CVE-2026-23821Alta (7.2)0.62%—12 may 2026
A vulnerability in the configuration processing logic of Access Points running AOS-10 could allow an authenticated remote attacker to execute system commands under certain pre-existing conditions. Successful…

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1210 Exploitation of Remote Services40
  2. T1059 Command and Scripting Interpreter37
  3. T1190 Exploit Public-Facing Application7
  4. T1499.004 Application or System Exploitation5
  5. T1505.003 Web Shell3
  6. T1059.007 JavaScript1

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.

Otros productos de Arubanetworks