VYPR

Edgeconnect Enterprise

by Arubanetworks

CVEs (25)

  • CVE-2022-37919HigDec 12, 2022
    risk 0.49cvss 7.5epss 0.01

    A vulnerability exists in the API of Aruba EdgeConnect Enterprise. An unauthenticated attacker can exploit this condition via the web-based management interface to create a denial-of-service condition which prevents the appliance from properly responding to API requests in Aruba…

  • CVE-2023-30506HigMay 16, 2023
    risk 0.47cvss 7.2epss 0.01

    Vulnerabilities exist in the Aruba EdgeConnect Enterprise command line interface that allow remote authenticated users to run arbitrary commands on the underlying host. Successful exploitation of these vulnerabilities result in the ability to execute arbitrary commands as…

  • CVE-2023-30505HigMay 16, 2023
    risk 0.47cvss 7.2epss 0.01

    Vulnerabilities exist in the Aruba EdgeConnect Enterprise command line interface that allow remote authenticated users to run arbitrary commands on the underlying host. Successful exploitation of these vulnerabilities result in the ability to execute arbitrary commands as…

  • CVE-2023-30504HigMay 16, 2023
    risk 0.47cvss 7.2epss 0.01

    Vulnerabilities exist in the Aruba EdgeConnect Enterprise command line interface that allow remote authenticated users to run arbitrary commands on the underlying host. Successful exploitation of these vulnerabilities result in the ability to execute arbitrary commands as…

  • CVE-2023-30503HigMay 16, 2023
    risk 0.47cvss 7.2epss 0.01

    Vulnerabilities exist in the Aruba EdgeConnect Enterprise command line interface that allow remote authenticated users to run arbitrary commands on the underlying host. Successful exploitation of these vulnerabilities result in the ability to execute arbitrary commands as…

  • CVE-2023-30502HigMay 16, 2023
    risk 0.47cvss 7.2epss 0.01

    Vulnerabilities exist in the Aruba EdgeConnect Enterprise command line interface that allow remote authenticated users to run arbitrary commands on the underlying host. Successful exploitation of these vulnerabilities result in the ability to execute arbitrary commands as…

  • CVE-2023-30501HigMay 16, 2023
    risk 0.47cvss 7.2epss 0.01

    Vulnerabilities exist in the Aruba EdgeConnect Enterprise command line interface that allow remote authenticated users to run arbitrary commands on the underlying host. Successful exploitation of these vulnerabilities result in the ability to execute arbitrary commands as…

  • CVE-2022-44533HigDec 12, 2022
    risk 0.47cvss 7.2epss 0.01

    A vulnerability in the Aruba EdgeConnect Enterprise web management interface allows remote authenticated users to run arbitrary commands on the underlying host. A successful exploit could allow an attacker to execute arbitrary commands as root on the underlying operating system…

  • CVE-2022-43542HigDec 12, 2022
    risk 0.47cvss 7.2epss 0.01

    Vulnerabilities in the Aruba EdgeConnect Enterprise command line interface allow remote authenticated users to run arbitrary commands on the underlying host. A successful exploit could allow an attacker to execute arbitrary commands as root on the underlying operating system…

  • CVE-2022-43541HigDec 12, 2022
    risk 0.47cvss 7.2epss 0.02

    Vulnerabilities in the Aruba EdgeConnect Enterprise command line interface allow remote authenticated users to run arbitrary commands on the underlying host. A successful exploit could allow an attacker to execute arbitrary commands as root on the underlying operating system…

  • CVE-2022-37924HigDec 12, 2022
    risk 0.47cvss 7.2epss 0.02

    Vulnerabilities in the Aruba EdgeConnect Enterprise command line interface allow remote authenticated users to run arbitrary commands on the underlying host. A successful exploit could allow an attacker to execute arbitrary commands as root on the underlying operating system…

  • CVE-2022-37923HigDec 12, 2022
    risk 0.47cvss 7.2epss 0.01

    Vulnerabilities in the Aruba EdgeConnect Enterprise command line interface allow remote authenticated users to run arbitrary commands on the underlying host. A successful exploit could allow an attacker to execute arbitrary commands as root on the underlying operating system…

  • CVE-2022-37922HigDec 12, 2022
    risk 0.47cvss 7.2epss 0.01

    Vulnerabilities in the Aruba EdgeConnect Enterprise command line interface allow remote authenticated users to run arbitrary commands on the underlying host. A successful exploit could allow an attacker to execute arbitrary commands as root on the underlying operating system…

  • CVE-2022-37921HigDec 12, 2022
    risk 0.47cvss 7.2epss 0.01

    Vulnerabilities in the Aruba EdgeConnect Enterprise command line interface allow remote authenticated users to run arbitrary commands on the underlying host. A successful exploit could allow an attacker to execute arbitrary commands as root on the underlying operating system…

  • CVE-2022-37920HigDec 12, 2022
    risk 0.47cvss 7.2epss 0.01

    Vulnerabilities in the Aruba EdgeConnect Enterprise command line interface allow remote authenticated users to run arbitrary commands on the underlying host. A successful exploit could allow an attacker to execute arbitrary commands as root on the underlying operating system…

  • CVE-2020-12149MedDec 11, 2020
    risk 0.44cvss 6.8epss 0.01

    The configuration backup/restore function in Silver Peak Unity ECOSTM (ECOS) appliance software was found to directly incorporate the user-controlled config filename in a subsequent shell command, allowing an attacker to manipulate the resulting command by injecting valid OS…

  • CVE-2020-12148MedDec 11, 2020
    risk 0.44cvss 6.8epss 0.02

    A command injection flaw identified in the nslookup API in Silver Peak Unity ECOSTM (ECOS) appliance software could allow an attacker to execute arbitrary commands with the privileges of the web server running on the EdgeConnect appliance. An attacker could exploit this…

  • CVE-2022-37925MedDec 12, 2022
    risk 0.40cvss 6.1epss 0.00

    A vulnerability within the web-based management interface of Aruba EdgeConnect Enterprise could allow a remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the interface. A successful exploit could allow an attacker to execute arbitrary…

  • CVE-2022-37926MedDec 12, 2022
    risk 0.36cvss 5.5epss 0.00

    A vulnerability within the web-based management interface of EdgeConnect Enterprise could allow a remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface by uploading a specially crafted file. A successful exploit could allow an…

  • CVE-2023-30509MedMay 16, 2023
    risk 0.32cvss 4.9epss 0.01

    Multiple authenticated path traversal vulnerabilities exist in the Aruba EdgeConnect Enterprise command line interface. Successful exploitation of these vulnerabilities result in the ability to read arbitrary files on the underlying operating system, including sensitive system…

Page 1 of 2