Home/Product/arubanetworks instant
Product

arubanetworks instant

33 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2022-37896
>= 6.4.0.0 and < 6.4.4.8-4.2.4.21
A vulnerability in the Aruba InstantOS and ArubaOS 10 web management interface could allow a remote attacker to conduct a reflecte
6.1MEDIUM
CVE-2022-37895
>= 6.4.0.0 and < 6.4.4.8-4.2.4.21
An unauthenticated Denial of Service (DoS) vulnerability exists in the handling of certain SSID strings by Aruba InstantOS and Aru
4.9MEDIUM
CVE-2022-37894
>= 6.4.0.0 and < 6.4.4.8-4.2.4.21
An unauthenticated Denial of Service (DoS) vulnerability exists in the handling of certain SSID strings by Aruba InstantOS and Aru
6.5MEDIUM
CVE-2022-37893
>= 6.4.0.0 and < 6.4.4.8-4.2.4.21
An authenticated command injection vulnerability exists in the Aruba InstantOS and ArubaOS 10 command line interface. Successful e
7.8HIGH
CVE-2022-37892
>= 6.4.0.0 and < 6.4.4.8-4.2.4.21
A vulnerability in the Aruba InstantOS and ArubaOS 10 web management interface could allow an unauthenticated remote attacker to c
5.4MEDIUM
CVE-2022-37891
>= 6.4.0.0 and < 6.4.4.8-4.2.4.21
Unauthenticated buffer overflow vulnerabilities exist within the Aruba InstantOS and ArubaOS 10 web management interface. Successf
9.8CRITICAL
CVE-2022-37890
>= 6.4.0.0 and < 6.4.4.8-4.2.4.21
Unauthenticated buffer overflow vulnerabilities exist within the Aruba InstantOS and ArubaOS 10 web management interface. Successf
9.8CRITICAL
CVE-2022-37889
>= 6.4.0.0 and < 6.4.4.8-4.2.4.21
There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution
9.8CRITICAL
CVE-2022-37887
>= 6.4.0.0 and < 6.4.4.8-4.2.4.21
There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution
9.8CRITICAL
CVE-2022-37886
>= 6.4.0.0 and < 6.4.4.8-4.2.4.21
There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution
9.8CRITICAL
CVE-2022-37885
>= 6.4.0.0 and < 6.4.4.8-4.2.4.21
There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution
9.8CRITICAL
CVE-2022-37888
>= 6.4.0.0 and < 6.4.4.8-4.2.4.21
There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code execution
9.8CRITICAL
CVE-2021-25162
>= 6.4.0.0 and <= 6.4.4.8-4.2.4.18
A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version
8.1HIGH
CVE-2021-25161
>= 6.4.0.0 and <= 6.4.4.8-4.2.4.18
A remote cross-site scripting (xss) vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s):
6.1MEDIUM
CVE-2021-25160
>= 6.4.0.0 and <= 6.4.4.8-4.2.4.18
A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s):
4.9MEDIUM
CVE-2021-25159
>= 6.4.0.0 and <= 6.4.4.8-4.2.4.18
A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s):
6.5MEDIUM
CVE-2021-25158
>= 6.5.0.0 and < 6.5.4.19
A remote arbitrary file read vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba I
5.9MEDIUM
CVE-2021-25157
>= 6.4.0.0 and <= 6.4.4.8-4.2.4.18
A remote arbitrary file read vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba I
4.9MEDIUM
CVE-2021-25156
>= 6.4.0.0 and <= 6.4.4.8-4.2.4.18
A remote arbitrary directory create vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s):
4.9MEDIUM
CVE-2019-5319
>= 6.4.0.0 and <= 6.4.4.8-4.2.4.17
A remote buffer overflow vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba Insta
9.8CRITICAL
CVE-2021-25155
>= 6.4.0.0 and <= 6.4.4.8-4.2.4.18
A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s):
6.5MEDIUM
CVE-2021-25150
>= 6.5.0.0 and < 6.5.4.18
A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version
8.8HIGH
CVE-2021-25146
>= 6.5.0.0 and < 6.5.4.18
A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version
7.2HIGH
CVE-2021-25149
>= 6.4.0.0 and <= 6.4.4.8-4.2.4.18
A remote buffer overflow vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba Insta
9.8CRITICAL
CVE-2021-25148
>= 6.5.0.0 and < 6.5.4.18
A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s):
8.1HIGH
CVE-2021-25145
>= 6.4.0.0 and <= 6.4.4.8-4.2.4.18
A remote unauthorized disclosure of information vulnerability was discovered in some Aruba Instant Access Point (IAP) products in
6.5MEDIUM
CVE-2021-25144
>= 6.4.0.0 and <= 6.4.4.8-4.2.4.18
A remote buffer overflow vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba Insta
8.8HIGH
CVE-2021-25143
>= 8.3.0.0 and < 8.3.0.13
A remote denial of service (dos) vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aru
7.5HIGH
CVE-2020-24636
>= 6.5.0.0 and < 6.5.4.18
A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version
9.8CRITICAL
CVE-2020-24635
>= 6.5.0.0 and < 6.5.4.18
A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version
7.2HIGH
CVE-2019-5317
>= 6.4.0.0 and <= 6.4.4.8-4.2.4.18
A local authentication bypass vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba
6.8MEDIUM
CVE-2018-16417
>= 4.0.0.0 and < 4.2.4.12
Aruba Instant 4.x prior to 6.4.4.8-4.2.4.12, 6.5.x prior to 6.5.4.11, 8.3.x prior to 8.3.0.6, and 8.4.x prior to 8.4.0.1 allows Co
7.5HIGH
CVE-2017-13099
< 6.5.4.6
wolfSSL prior to version 3.12.2 provides a weak Bleichenbacher oracle when any TLS cipher suite using RSA key exchange is negotiat
7.5HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin