VYPR

EdgeConnect Enterprise Orchestration Software

by Arubanetworks

CVEs (9)

  • CVE-2022-44535HigJan 5, 2023
    risk 0.57cvss 8.8epss 0.01

    A vulnerability in the Aruba EdgeConnect Enterprise Orchestrator web-based management interface allows remote low-privileged authenticated users to escalate their privileges to those of an administrative user. A successful exploit could allow an attacker to achieve…

  • CVE-2022-43523HigJan 5, 2023
    risk 0.57cvss 8.8epss 0.01

    Multiple vulnerabilities in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow an authenticated remote attacker to conduct SQL injection attacks against the Aruba EdgeConnect Enterprise Orchestrator instance. An attacker could exploit…

  • CVE-2022-43521HigJan 5, 2023
    risk 0.57cvss 8.8epss 0.01

    Multiple vulnerabilities in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow an authenticated remote attacker to conduct SQL injection attacks against the Aruba EdgeConnect Enterprise Orchestrator instance. An attacker could exploit…

  • CVE-2022-43520HigJan 5, 2023
    risk 0.57cvss 8.8epss 0.01

    Multiple vulnerabilities in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow an authenticated remote attacker to conduct SQL injection attacks against the Aruba EdgeConnect Enterprise Orchestrator instance. An attacker could exploit…

  • CVE-2022-43519HigJan 5, 2023
    risk 0.57cvss 8.8epss 0.01

    Multiple vulnerabilities in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow an authenticated remote attacker to conduct SQL injection attacks against the Aruba EdgeConnect Enterprise Orchestrator instance. An attacker could exploit…

  • CVE-2022-43527MedJan 5, 2023
    risk 0.40cvss 6.1epss 0.00

    Multiple vulnerabilities within the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow a remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the interface. A successful exploit could allow an attacker to…

  • CVE-2022-43526MedJan 5, 2023
    risk 0.40cvss 6.1epss 0.00

    Multiple vulnerabilities within the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow a remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the interface. A successful exploit could allow an attacker to…

  • CVE-2022-43525MedJan 5, 2023
    risk 0.40cvss 6.1epss 0.00

    Multiple vulnerabilities within the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow a remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the interface. A successful exploit could allow an attacker to…

  • CVE-2022-43529MedJan 5, 2023
    risk 0.30cvss 4.6epss 0.00

    A vulnerability in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow an remote attacker to persist a session after a password reset or similar session clearing event. Successful exploitation of this vulnerability could allow an…