Latest CVE Feed
-
7.2
HIGHCVE-2021-37731
A local path traversal vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.0-2.2.0.4; Prior to 8.7.1.1, 8.6.0.7, 8.5.0.12, 8.3.0.16. Aruba has released patches for Aruba SD-WAN Sof... Read more
Affected Products : arubaos sd-wan scalance_w1750d_firmware scalance_w1750d 9004 9004-lte 9012 7005 7008 7010 +7 more products- Published: Sep. 07, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-37730
A remote arbitrary command execution vulnerability was discovered in HPE Aruba Instant (IAP) version(s): Aruba Instant 6.4.x.x: 6.4.4.8-4.2.4.18 and below; Aruba Instant 6.5.x.x: 6.5.4.20 and below; Aruba Instant 8.5.x.x: 8.5.0.12 and below; Aruba Instant... Read more
- Published: Oct. 12, 2021
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2021-37729
A remote path traversal vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.0-2.2.0.4; Prior to 8.7.1.3, 8.6.0.9, 8.5.0.12, 8.3.0.16, 6.5.4.19, 6.4.4.25. Aruba has released patches... Read more
- Published: Sep. 07, 2021
- Modified: Nov. 21, 2024
-
8.5
HIGHCVE-2021-37728
A remote path traversal vulnerability was discovered in Aruba Operating System Software version(s): Prior to 8.8.0.1, 8.7.1.4, 8.6.0.11, 8.5.0.13. Aruba has released patches for ArubaOS that address this security vulnerability.... Read more
- Published: Sep. 07, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-37727
A remote arbitrary command execution vulnerability was discovered in HPE Aruba Instant (IAP) version(s): 6.4.x.x: 6.4.4.8-4.2.4.18 and below; Aruba Instant 6.5.x.x: 6.5.4.20 and below; Aruba Instant 8.5.x.x: 8.5.0.12 and below; Aruba Instant 8.6.x.x: 8.6.... Read more
- Published: Oct. 12, 2021
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2021-37726
A remote buffer overflow vulnerability was discovered in HPE Aruba Instant (IAP) version(s): Aruba Instant 8.7.x.x: 8.7.0.0 through 8.7.1.2. Aruba has released patches for Aruba Instant (IAP) that address this security vulnerability.... Read more
- Published: Oct. 12, 2021
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2021-37725
A remote cross-site request forgery (csrf) vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.8.0.1, 8.7.1.2, 8.6.0.8, 8.5.0.12, 8.3.0.15. Aruba has released... Read more
- Published: Sep. 07, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-37724
A remote arbitrary command execution vulnerability was discovered in Aruba Operating System Software version(s): Prior to 8.7.1.2, 8.6.0.8, 8.5.0.12, 8.3.0.16. Aruba has released patches for ArubaOS that address this security vulnerability.... Read more
- Published: Sep. 07, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-37723
A remote arbitrary command execution vulnerability was discovered in Aruba Operating System Software version(s): Prior to 8.7.1.2, 8.6.0.8, 8.5.0.12, 8.3.0.16. Aruba has released patches for ArubaOS that address this security vulnerability.... Read more
- Published: Sep. 07, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-37722
A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.7.1.4, 8.6.0.9, 8.5.0.13, 8.3.0.16, 6.5.4.20, 6.4.4.25. Aruba has rel... Read more
- Published: Sep. 07, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-37721
A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.7.1.4, 8.6.0.9, 8.5.0.13, 8.3.0.16, 6.5.4.20, 6.4.4.25. Aruba has rel... Read more
- Published: Sep. 07, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-37720
A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.7.1.4, 8.6.0.9, 8.5.0.13, 8.3.0.16, 6.5.4.20, 6.4.4.25. Aruba has rel... Read more
- Published: Sep. 07, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-37719
A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.7.1.4, 8.6.0.9, 8.5.0.13, 8.3.0.16, 6.5.4.20, 6.4.4.25. Aruba has rel... Read more
- Published: Sep. 07, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-37718
A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.6; Prior to 8.7.1.4, 8.6.0.7, 8.5.0.12, 8.3.0.16. Aruba has released patches for Ar... Read more
- Published: Sep. 07, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-37717
A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.6; Prior to 8.7.1.4, 8.6.0.7, 8.5.0.12, 8.3.0.16. Aruba has released patches for Ar... Read more
- Published: Sep. 07, 2021
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2021-37716
A remote buffer overflow vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.7.1.2, 8.6.0.8, 8.5.0.12, 8.3.0.15. Aruba has released patches for Aruba SD-WAN S... Read more
- Published: Sep. 07, 2021
- Modified: Nov. 21, 2024
-
4.8
MEDIUMCVE-2021-37715
A remote cross-site scripting (XSS) vulnerability was discovered in Aruba AirWave Management Platform version(s): Prior to 8.2.13.0. Aruba has released upgrades for the Aruba AirWave Management Platform that address this security vulnerability.... Read more
Affected Products : airwave- Published: Aug. 26, 2021
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2021-37714
jsoup is a Java library for working with HTML. Those using jsoup versions prior to 1.14.2 to parse untrusted HTML or XML may be vulnerable to DOS attacks. If the parser is run on user supplied input, an attacker may supply content that causes the parser t... Read more
Affected Products : peoplesoft_enterprise_peopletools quarkus retail_customer_management_and_segmentation_foundation primavera_unifier flexcube_universal_banking business_process_management_suite webcenter_portal banking_treasury_management communications_messaging_server management_services_for_element_software_and_netapp_hci +6 more products- Published: Aug. 18, 2021
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2021-37713
The npm package "tar" (aka node-tar) before versions 4.4.18, 5.0.10, and 6.1.9 has an arbitrary file creation/overwrite and arbitrary code execution vulnerability. node-tar aims to guarantee that any file whose location would be outside of the extraction ... Read more
- Published: Aug. 31, 2021
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2021-37712
The npm package "tar" (aka node-tar) before versions 4.4.18, 5.0.10, and 6.1.9 has an arbitrary file creation/overwrite and arbitrary code execution vulnerability. node-tar aims to guarantee that any file whose location would be modified by a symbolic lin... Read more
- Published: Aug. 31, 2021
- Modified: Nov. 21, 2024