Known vulnerabilities in ArubaOS (AOS) 8.6.0.2 - page 4

Software: ArubaOS (AOS)
Version: 8.6.0.2
Software CPE: cpe:2.3:o:aruba_networks:arubaos:*:*:*:*:*:*:*:*
Website:
Total vulnerabilities: 95
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting ArubaOS (AOS) version 8.6.0.2 ArubaOS (AOS) 8.6.0.2 is affected by 95 vulnerabilities: 13 high, 12 medium, 70 low Critical High Medium Low

Vulnerabilities (95)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU72671 - Improper Access Control
CVE-2023-22775
CWE-284 Low
No
No
8.6.0.20, 8.10.0.5, 8.11.0.0, 10.3.1.1 01.03.2023 SB2023030113
#VU72669 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2023-22774
CWE-22 Low
No
No
8.6.0.20, 8.10.0.5, 8.11.0.0, 10.3.1.1 01.03.2023 SB2023030113
#VU72668 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2023-22773
CWE-22 Low
No
No
8.6.0.20, 8.10.0.5, 8.11.0.0, 10.3.1.1 01.03.2023 SB2023030113
#VU72667 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2023-22772
CWE-22 Low
No
No
8.6.0.20, 8.10.0.5, 8.11.0.0, 10.3.1.1 01.03.2023 SB2023030113
#VU72666 - Insufficient Session Expiration
CVE-2023-22771
CWE-613 Low
No
No
8.6.0.20, 8.10.0.5, 8.11.0.0, 10.3.1.1 01.03.2023 SB2023030113
#VU72650 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-22758
CWE-78 Low
No
No
8.6.0.20, 8.10.0.5, 8.11.0.0, 10.3.1.1 01.03.2023 SB2023030113
#VU72651 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-22759
CWE-78 Low
No
No
8.6.0.20, 8.10.0.5, 8.11.0.0, 10.3.1.1 01.03.2023 SB2023030113
#VU72652 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-22760
CWE-78 Low
No
No
8.6.0.20, 8.10.0.5, 8.11.0.0, 10.3.1.1 01.03.2023 SB2023030113
#VU72653 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-22761
CWE-78 Low
No
No
8.6.0.20, 8.10.0.5, 8.11.0.0, 10.3.1.1 01.03.2023 SB2023030113
#VU68773 - Security Features
CVE-2022-37908
CWE-254 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68772 - Resource Management Errors
CVE-2022-37907
CWE-399 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68770 - Security Features
CVE-2022-37905
CWE-254 Medium
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68769 - Security Features
CVE-2022-37904
CWE-254 Medium
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68768 - Unrestricted Upload of File with Dangerous Type
CVE-2022-37903
CWE-434 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68762 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-37898
CWE-78 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68764 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-37900
CWE-78 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68765 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-37901
CWE-78 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68766 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-37902
CWE-78 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68761 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-37897
CWE-78 High
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU56064 - Out-of-bounds read
CVE-2021-3712
CWE-125 Medium
No
No
8.6.0.20, 8.10.0.5, 8.11.0.0, 10.3.1.1 24.08.2021 SB2021082414
SB2021082508
SB2021082510
and 142 more


Showing elements 61 - 80 out of 95