Known vulnerabilities in ArubaOS (AOS) - page 7

Software: ArubaOS (AOS)
Software CPE: cpe:2.3:o:aruba_networks:arubaos:*:*:*:*:*:*:*:*
Website:
Total vulnerabilities: 174
Public exploits: 6
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting ArubaOS (AOS) ArubaOS (AOS) is affected by 174 known vulnerabilities: 52 high, 27 medium, 95 low Critical High Medium Low

Vulnerabilities (174)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU68776 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2022-37911
CWE-611 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68775 - Memory corruption
CVE-2022-37910
CWE-119 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68774 - Exposure of sensitive information to an unauthorized actor
CVE-2022-37909
CWE-200 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68772 - Resource Management Errors
CVE-2022-37907
CWE-399 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68770 - Security Features
CVE-2022-37905
CWE-254 Medium
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68769 - Security Features
CVE-2022-37904
CWE-254 Medium
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68768 - Unrestricted Upload of File with Dangerous Type
CVE-2022-37903
CWE-434 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68762 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-37898
CWE-78 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68763 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-37899
CWE-78 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68764 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-37900
CWE-78 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68765 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-37901
CWE-78 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68766 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-37902
CWE-78 Low
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU68761 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-37897
CWE-78 High
No
No
6.5.4.23, 8.6.0.18, 8.7.1.10, 10.3.0.1 26.10.2022 SB2022102646
#VU67785 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-37896
CWE-79 Low
No
No
10.3.1.1 30.09.2022 SB2022093031
#VU67784 - Improper input validation
CVE-2022-37895
CWE-20 Low
No
No
10.3.1.1 30.09.2022 SB2022093031
#VU67783 - Improper input validation
CVE-2022-37894
CWE-20 Low
No
No
10.3.1.1 30.09.2022 SB2022093031
#VU67782 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-37893
CWE-78 Low
No
No
10.3.1.1 30.09.2022 SB2022093031
#VU67781 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-37892
CWE-79 Low
No
No
10.3.1.1 30.09.2022 SB2022093031
#VU67780 - Memory corruption
CVE-2022-37891
CWE-119 High
No
No
10.3.1.1 30.09.2022 SB2022093031
#VU67779 - Memory corruption
CVE-2022-37890
CWE-119 High
No
No
10.3.1.1 30.09.2022 SB2022093031


Showing elements 121 - 140 out of 174