Vulnerabilities (CVE)

Filtered by vendor Arubanetworks Subscribe
Total 584 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-44854 1 Arubanetworks 2 Arubaos, Sd-wan 2026-05-14 N/A 7.2 HIGH
Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Successful exploitation could allow an authenticated remote attacker to upload arbitrary files to the underlying operating system, potentially leading to remote code execution as a privileged user.
CVE-2026-44853 1 Arubanetworks 2 Arubaos, Sd-wan 2026-05-14 N/A 7.2 HIGH
Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Successful exploitation could allow an authenticated remote attacker to upload arbitrary files to the underlying operating system, potentially leading to remote code execution as a privileged user.
CVE-2026-44871 1 Arubanetworks 2 Arubaos, Sd-wan 2026-05-14 N/A 7.2 HIGH
Command injection vulnerabilities exist in the command line interface (CLI) service accessed by the PAPI protocol of AOS-8 and AOS-10 Operating Systems. Successful exploitation of these vulnerabilities could allow an authenticated remote attacker to execute arbitrary commands on the underlying operating system.
CVE-2026-44872 1 Arubanetworks 2 Arubaos, Sd-wan 2026-05-13 N/A 7.2 HIGH
A command injection vulnerability exists in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Successful exploitation could allow an authenticated remote attacker to place arbitrary files on the underlying filesystem of the affected device.