arubanetworks

578 tracked vulnerabilities.

CVE-2026-23825 HIGH
Unauthenticated Denial-of-Service via Crafted Messages in a Network Protocol Handling Component
May 12, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-23824 HIGH
Unauthenticated Denial-of-Service via Crafted Messages in a Network Protocol Handling Component
May 12, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-23812 MEDIUM
Access Point - Auth Bypass
Mar 04, 2026
CVSS 4.3
EPSS 0.00
CVE-2026-23811 MEDIUM
Client Isolation Mechanism - Auth Bypass
Mar 04, 2026
CVSS 4.3
EPSS 0.00
CVE-2026-23810 MEDIUM
Wi-Fi AP - Traffic Injection
Mar 04, 2026
CVSS 4.3
EPSS 0.00
CVE-2026-23809 MEDIUM
ArubaOS 6.5.4.0-8.10.0.21, AOS-10 & AOS-8 8.13.0.0-10.8.0.0 - Resource Consumption via Port-Stealing
Mar 04, 2026
CVSS 5.4
EPSS 0.00
CVE-2026-23808 MEDIUM
Wireless Roaming Protocol - Auth Bypass
Mar 04, 2026
CVSS 5.4
EPSS 0.00
CVE-2026-23601 MEDIUM
Wi-Fi Encryption - Auth Bypass
Mar 04, 2026
CVSS 5.4
EPSS 0.00
CVE-2025-37185 MEDIUM
EdgeConnect SD-WAN Orchestrator - XSS
Jan 14, 2026
CVSS 5.5
EPSS 0.00
CVE-2025-37184 CRITICAL
Aruba EdgeConnect SD-WAN Orchestrator 9.2.0-9.2.9 - Unauthenticated Multi-Factor Authentication Bypass
Jan 14, 2026
CVSS 9.8
EPSS 0.00
CVE-2025-37183 HIGH
EdgeConnect SD-WAN Orchestrator - Authenticated SQL Injection
Jan 14, 2026
CVSS 7.2
EPSS 0.00
CVE-2025-37182 HIGH
EdgeConnect SD-WAN Orchestrator - Authenticated SQL Injection
Jan 14, 2026
CVSS 7.2
EPSS 0.00
CVE-2025-37181 HIGH
EdgeConnect SD-WAN Orchestrator - Authenticated SQL Injection
Jan 14, 2026
CVSS 7.2
EPSS 0.00
CVE-2025-37179 MEDIUM
System Component - Memory Corruption
Jan 13, 2026
CVSS 5.3
EPSS 0.00
CVE-2025-37178 MEDIUM
System Component - Memory Corruption
Jan 13, 2026
CVSS 5.3
EPSS 0.00
CVE-2025-37177 MEDIUM
ArubaOS 6.5.4.0-8.10.0.21 - Authenticated Arbitrary File Deletion via Command-Line Interface
Jan 13, 2026
CVSS 6.5
EPSS 0.00
CVE-2025-37176 MEDIUM
ArubaOS 8.6.0.0-8.10.0.21 - Authenticated Command Injection via Package Header
Jan 13, 2026
CVSS 6.5
EPSS 0.00
CVE-2025-37175 HIGH
Mobility Conductor - Privilege Escalation
Jan 13, 2026
CVSS 7.2
EPSS 0.00
CVE-2025-37174 HIGH
Mobility Conductors - Authenticated RCE
Jan 13, 2026
CVSS 7.2
EPSS 0.00
CVE-2025-37173 HIGH
Mobility Conductor - Improper Input Handling
Jan 13, 2026
CVSS 7.2
EPSS 0.00
CVE-2025-37172 HIGH
Mobility Conductors - Command Injection
Jan 13, 2026
CVSS 7.2
EPSS 0.00
CVE-2025-37171 HIGH
Mobility Conductor - AOS-8 - Command Injection
Jan 13, 2026
CVSS 7.2
EPSS 0.00
CVE-2025-37170 HIGH
Mobility Conductor - AOS-8 - Command Injection
Jan 13, 2026
CVSS 7.2
EPSS 0.00
CVE-2025-37169 HIGH
ArubaOS 10.3.0.0-10.4.1.0 - Authenticated Stack-based Buffer Overflow
Jan 13, 2026
CVSS 7.2
EPSS 0.00
CVE-2025-37168 HIGH
Mobility Conductors <AOS-8 - Privilege Escalation
Jan 13, 2026
CVSS 8.2
EPSS 0.00