Known vulnerabilities in Aruba Instant
Vendor:
Aruba Networks
Software:
Aruba Instant
Software CPE:
cpe:2.3:h:aruba_networks:aruba_instant:*:*:*:*:*:*:*:*
Total vulnerabilities:
41
Public exploits:
4
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
8.10.0.2
8.7.1.10
8.6.0.19
6.5.4.24
6.4.4.8-4.2.4.21
8.10.0.1
8.10.0.0
8.7.1.9
8.7.1.8
8.7.1.7
8.7.1.6
8.7.1.5
8.6.0.18
8.6.0.16
8.6.0.15
8.6.0.14
8.6.0.13
6.5.4.23
6.5.4.22
6.4.4.8-4.2.4.20
8.8.0.1
8.5.0.8
8.5.0.5
8.5.0.4
8.5.0.3
8.5.0.2
8.5.0.1
8.5.0.0
6.5.4.14
6.5.4.13
6.5.4.12
6.5.4.11
6.5.4.10
6.5.4.9
6.5.4.8
6.5.4.7
6.5.4.6
6.5.4.5
6.5.4.4
6.5.4.3
6.5.4.2
6.5.4.1
6.5.4.0
8.6.0.11
8.6.0.10
8.6.0.9
8.6.0.1
8.6.0.0
8.7.1.4
8.6.0.12
8.5.0.13
6.5.4.21
6.5.4.20
6.4.4.8-4.2.4.19
6.4.4.8-4.2.4.18
6.4.4.8-4.2.4.17
6.4.4.8-4.2.4.16
6.4.4.8-4.2.4.15
6.4.4.8-4.2.4.14
6.4.4.8-4.2.4.13
6.4.4.8-4.2.4.12
6.4.4.8-4.2.4.11
6.4.4.8-4.2.4.10
6.4.4.8-4.2.4.9
6.4.4.8-4.2.4.8
6.4.4.8-4.2.4.7
6.4.4.8-4.2.4.6
6.4.4.8-4.2.4.5
6.4.4.8-4.2.4.4
6.4.4.8-4.2.4.3
6.4.4.8-4.2.4.2
6.4.4.8-4.2.4.1
6.4.4.8-4.2.4.0
8.7.1.3
8.9.0.0
8.8.0.0
8.7.1.2
8.6.0.8
8.7.1.1
8.6.0.7
8.5.0.12
8.3.0.15
6.5.4.19
8.6.0.4
8.5.0.9
8.6.0.5
8.5.0.10
8.7.1.0
8.6.0.6
8.5.0.11
8.3.0.14
6.5.4.18
8.3.0.13
6.5.4.17
4.2.4.17
8.7.0.0
8.6.0.3
8.5.0.7
8.4.0.6
8.3.0.12
6.5.4.16
8.6.0.2
8.5.0.6
8.4.0.5
8.3.0.11
6.5.4.15
6.4.4.8
4.2.4.18
Vulnerabilities (41)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU74346 - Missing Encryption of Sensitive Data CVE-2022-47522 |
CWE-311 | Medium | - | 04.04.2023 |
SB2023040407 SB2023042808 SB2023051034 and 2 more |
||
| #VU67785 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2022-37896 |
CWE-79 | Low | 6.4.4.8-4.2.4.21, 6.5.4.24, 8.6.0.19, 8.7.1.10, 8.10.0.2 | 30.09.2022 |
SB2022093031 |
||
| #VU67784 - Improper input validation CVE-2022-37895 |
CWE-20 | Low | 6.4.4.8-4.2.4.21, 6.5.4.24, 8.6.0.19, 8.7.1.10, 8.10.0.2 | 30.09.2022 |
SB2022093031 |
||
| #VU67783 - Improper input validation CVE-2022-37894 |
CWE-20 | Low | 6.4.4.8-4.2.4.21, 6.5.4.24, 8.6.0.19, 8.7.1.10, 8.10.0.2 | 30.09.2022 |
SB2022093031 |
||
| #VU67782 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2022-37893 |
CWE-78 | Low | 6.4.4.8-4.2.4.21, 6.5.4.24, 8.6.0.19, 8.7.1.10, 8.10.0.2 | 30.09.2022 |
SB2022093031 |
||
| #VU67781 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2022-37892 |
CWE-79 | Low | 6.4.4.8-4.2.4.21, 6.5.4.24, 8.6.0.19, 8.7.1.10, 8.10.0.2 | 30.09.2022 |
SB2022093031 |
||
| #VU67780 - Memory corruption CVE-2022-37891 |
CWE-119 | High | 6.4.4.8-4.2.4.21, 6.5.4.24, 8.6.0.19, 8.7.1.10, 8.10.0.2 | 30.09.2022 |
SB2022093031 |
||
| #VU67779 - Memory corruption CVE-2022-37890 |
CWE-119 | High | 6.4.4.8-4.2.4.21, 6.5.4.24, 8.6.0.19, 8.7.1.10, 8.10.0.2 | 30.09.2022 |
SB2022093031 |
||
| #VU67778 - Memory corruption CVE-2022-37889 |
CWE-119 | High | 6.4.4.8-4.2.4.21, 6.5.4.24, 8.6.0.19, 8.7.1.10, 8.10.0.2 | 30.09.2022 |
SB2022093031 |
||
| #VU67776 - Memory corruption CVE-2022-37888 |
CWE-119 | High | 6.4.4.8-4.2.4.21, 6.5.4.24, 8.6.0.19, 8.7.1.10, 8.10.0.2 | 30.09.2022 |
SB2022093031 |
||
| #VU67775 - Memory corruption CVE-2022-37887 |
CWE-119 | High | 6.4.4.8-4.2.4.21, 6.5.4.24, 8.6.0.19, 8.7.1.10, 8.10.0.2 | 30.09.2022 |
SB2022093031 |
||
| #VU67774 - Memory corruption CVE-2022-37886 |
CWE-119 | High | 6.4.4.8-4.2.4.21, 6.5.4.24, 8.6.0.19, 8.7.1.10, 8.10.0.2 | 30.09.2022 |
SB2022093031 |
||
| #VU67773 - Memory corruption CVE-2022-37885 |
CWE-119 | High | 6.4.4.8-4.2.4.21, 6.5.4.24, 8.6.0.19, 8.7.1.10, 8.10.0.2 | 30.09.2022 |
SB2022093031 |
||
| #VU67772 - Resource exhaustion CVE-2002-20001 |
CWE-400 | Medium | 6.4.4.8-4.2.4.21, 6.5.4.24, 8.6.0.19, 8.7.1.10, 8.10.0.2 | 30.09.2022 |
SB2022093031 SB2022120715 SB2025080408 and 1 more |
||
| #VU57136 - Use of Externally-Controlled Format String CVE-2021-37735 |
CWE-134 | Low | 6.5.4.19, 8.5.0.11, 8.6.0.5 | 07.10.2021 |
SB2021100720 SB2021111004 |
||
| #VU57135 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2021-37734 |
CWE-22 | Low | 6.4.4.8-4.2.4.19, 6.5.4.20, 8.5.0.13, 8.6.0.12, 8.7.1.4, 8.8.0.1 | 07.10.2021 |
SB2021100720 SB2021111005 |
||
| #VU57134 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2021-37732 |
CWE-78 | Low | 6.4.4.8-4.2.4.18, 6.5.4.19, 8.5.0.12, 8.6.0.7, 8.7.1.1 | 07.10.2021 |
SB2021100720 SB2021111004 |
||
| #VU57133 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2021-37730 |
CWE-78 | Low | 6.4.4.8-4.2.4.19, 6.5.4.21, 8.5.0.13, 8.6.0.12, 8.7.1.4 | 07.10.2021 |
SB2021100720 SB2021111005 |
||
| #VU57132 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2021-37727 |
CWE-78 | Low | 6.4.4.8-4.2.4.19, 6.5.4.21, 8.5.0.13, 8.6.0.12, 8.7.1.4 | 07.10.2021 |
SB2021100720 SB2021111005 |
||
| #VU57099 - Memory corruption CVE-2021-37726 |
CWE-119 | High | 8.7.1.3 | 06.10.2021 |
SB2021100720 SB2021111004 |
Showing elements 1 - 20 out of 41