Known vulnerabilities in ArubaOS (AOS) 8.6.0.2 - page 5

Software: ArubaOS (AOS)
Version: 8.6.0.2
Software CPE: cpe:2.3:o:aruba_networks:arubaos:*:*:*:*:*:*:*:*
Website:
Total vulnerabilities: 95
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting ArubaOS (AOS) version 8.6.0.2 ArubaOS (AOS) 8.6.0.2 is affected by 95 vulnerabilities: 13 high, 12 medium, 70 low Critical High Medium Low

Vulnerabilities (95)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU68776 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2022-37911
CWE-611 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68775 - Memory corruption
CVE-2022-37910
CWE-119 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68774 - Exposure of sensitive information to an unauthorized actor
CVE-2022-37909
CWE-200 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68771 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-37906
CWE-22 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68763 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-37899
CWE-78 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68767 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-37912
CWE-78 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU56284 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2020-37719
CWE-78 Low
No
No
6.4.4.25, 6.5.4.20, 8.3.0.16, 8.5.0.13, 8.6.0.9, 8.7.1.4 02.09.2021 SB2021090214
#VU56285 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2021-37720
CWE-78 Low
No
No
6.4.4.25, 6.5.4.20, 8.3.0.16, 8.5.0.13, 8.6.0.9, 8.7.1.4 02.09.2021 SB2021090214
#VU56286 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2021-37721
CWE-78 Low
No
No
6.4.4.25, 6.5.4.20, 8.3.0.16, 8.5.0.13, 8.6.0.9, 8.7.1.4 02.09.2021 SB2021090214
#VU56287 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2021-37722
CWE-78 Low
No
No
6.4.4.25, 6.5.4.20, 8.3.0.16, 8.5.0.13, 8.6.0.9, 8.7.1.4 02.09.2021 SB2021090214
#VU56283 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2021-37718
CWE-78 Medium
No
No
8.3.0.16, 8.5.0.12, 8.6.0.7, 8.7.1.4 02.09.2021 SB2021090213
#VU56282 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2021-37717
CWE-78 Medium
No
No
8.3.0.16, 8.5.0.12, 8.6.0.7, 8.7.1.4 02.09.2021 SB2021090213
#VU56218 - Memory corruption
CVE-2021-37716
CWE-119 High
No
No
8.3.0.15, 8.5.0.12, 8.6.0.8, 8.7.1.2 31.08.2021 SB2021083137
#VU53167 - Improper input validation
CVE-2020-26146
CWE-20 Low
No
No
6.4.4.25, 6.5.4.19, 8.3.0.15, 8.5.0.12, 8.6.0.8, 8.7.1.2 12.05.2021 SB2021051212
SB2021051227
SB2021051715
and 19 more
#VU53098 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2020-24588
CWE-451 Low
No
No
6.4.4.25, 6.5.4.19, 8.3.0.15, 8.5.0.12, 8.6.0.8, 8.7.1.2 11.05.2021 SB2021051118
SB2021051227
SB2021051708
and 59 more


Showing elements 81 - 100 out of 95