Known Vulnerabilities for Airwave Glass by Arubanetworks
Listed below are 10 of the newest known vulnerabilities associated with "Airwave Glass" by "Arubanetworks".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-24641 json | In Aruba AirWave Glass before 1.3.3, there is a Server-Side Request Forgery vulnerability through an unauthenticated endpoint... | 7.5 - HIGH | 2021-01-15 | 2021-07-21 |
| CVE-2020-24640 json | There is a vulnerability caused by insufficient input validation that allows for arbitrary command execution in a containeriz... | 9.8 - CRITICAL | 2021-01-15 | 2021-01-21 |
| CVE-2020-24639 json | There is a vulnerability caused by unsafe Java deserialization that allows for arbitrary command execution in a containerized... | 9.8 - CRITICAL | 2021-01-15 | 2021-01-21 |
| CVE-2020-24638 json | Multiple authenticated remote command executions are possible in Airwave Glass before 1.3.3 via the glassadmin cli. These all... | 7.2 - HIGH | 2021-01-15 | 2021-01-21 |
| CVE-2020-24632 json | A remote execution of arbitrary commandss vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2. | 7.2 - HIGH | 2020-10-26 | 2021-07-21 |
| CVE-2020-24631 json | A remote execution of arbitrary commands vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2. | 7.2 - HIGH | 2020-10-26 | 2021-07-21 |
| CVE-2020-7129 json | A remote execution of arbitrary commands vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2. | 7.2 - HIGH | 2020-11-04 | 2021-07-21 |
| CVE-2020-7128 json | A remote unauthenticated arbitrary code execution vulnerability was discovered in Aruba Airwave Software version(s): Prior to... | 9.8 - CRITICAL | 2020-11-04 | 2021-07-21 |
| CVE-2020-7127 json | A remote unauthenticated arbitrary code execution vulnerability was discovered in Aruba Airwave Software version(s): Prior to... | 9.8 - CRITICAL | 2020-10-26 | 2020-10-30 |
| CVE-2020-7126 json | A remote server-side request forgery (ssrf) vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2... | 5.8 - MEDIUM | 2020-10-26 | 2020-10-27 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Arubanetworks | Airwave Glass | 1.3.3 | |||
| Application | Arubanetworks | Airwave Glass | 1.3.2 | |||
| Application | Arubanetworks | Airwave Glass | 1.3.1 | |||
| Application | Arubanetworks | Airwave Glass | 1.3.0 | |||
| Application | Arubanetworks | Airwave Glass | 1.2.1 | |||
| Application | Arubanetworks | Airwave Glass | - |