moonv
16 записей с упоминанием · 16 за 12 месяцев · 0 в CISA KEV
Имена — свободный текст из записей CNA; один человек может встречаться в разных написаниях. Напишите нам для исправления.
Записи с упоминанием
Исследователи| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
17Наблюдать | CVE-2026-71172Эксплойта нет | Dell Cloud Disaster Recovery, versions 20.2 and prior, contain a Server-Side Request Forgery (SSRF) vulnerability.dell · cloud disaster recovery · CWE-918 | Средняя4,3 | — | 0,3 % | 26 авг. 2026 г. |
28Наблюдать | CVE-2026-44879Эксплойта нет | Authenticated Command Injection allows arbitrary command execution in CLI Interfacehewlett packard enterprise (hpe) · edgeconnect sd-wan gateway (ecos) · CWE-77 | Высокая7,2 | — | 1,5 % | 21 июл. 2026 г. |
28Наблюдать | CVE-2026-44878Эксплойта нет | Authenticated Path Traversal allows Unauthorized Access in Web Interfacehewlett packard enterprise (hpe) · edgeconnect sd-wan gateway (ecos) · CWE-377 | Высокая7,2 | — | 0,6 % | 21 июл. 2026 г. |
28Наблюдать | CVE-2026-63454Эксплойта нет | Authenticated Path Traversal Vulnerability Leads to Remote Code Execution in AOS-CXhpe · arubaos-cx · CWE-22 | Высокая7,2 | — | 0,9 % | 21 июл. 2026 г. |
35Наблюдать | CVE-2026-44880Эксплойта нет | Low-Privilege Authenticated Buffer Overflow Vulnerabilities lead to Remote Code Execution in AOS-CXhpe · arubaos-cx · CWE-120 | Высокая8,8 | — | 0,8 % | 21 июл. 2026 г. |
35Наблюдать | CVE-2026-44866Эксплойта нет | Authenticated Command Injection Vulnerabilities in the Web-Based Management Interface of AOS-8 and AOS-10arubanetworks · arubaos · CWE-77 | Высокая8,8 | — | 1,4 % | 12 мая 2026 г. |
28Наблюдать | CVE-2026-44865Эксплойта нет | Authenticated Command Injection Vulnerabilities in the Web-Based Management Interface of AOS-8 and AOS-10arubanetworks · arubaos · CWE-77 | Высокая7,2 | — | 1,5 % | 12 мая 2026 г. |
28Наблюдать | CVE-2026-23821Эксплойта нет | Inconsistent input filtering allows Authenticated Command Injection in AOS-10 CLIarubanetworks · arubaos · CWE-78 | Высокая7,2 | — | 0,6 % | 12 мая 2026 г. |
28Наблюдать | CVE-2026-23820Эксплойта нет | Inconsistent input filtering allows Authenticated Command Injection in AOS-8 Instant and AOS-10 CLIarubanetworks · arubaos · CWE-78 | Высокая7,2 | — | 0,6 % | 12 мая 2026 г. |
35Наблюдать | CVE-2026-23816Эксплойта нет | Authenticated Command Injection found in admin AOS-CX CLI commandhpe · arubaos-cx · CWE-78 | Высокая8,8 | — | 1,2 % | 11 мар. 2026 г. |
28Наблюдать | CVE-2026-23815Эксплойта нет | Authenticated Command Injection found in AOS-CX Administrative CLI Commandhpe · arubaos-cx · CWE-77 | Высокая7,2 | — | 0,9 % | 11 мар. 2026 г. |
39Наблюдать | CVE-2026-23813Proof of concept | Authentication Bypass in Web Interface allows Unauthenticated Admin Password Resethpe · arubaos-cx · CWE-287 | Критическая9,8 | — | 0,7 % | 11 мар. 2026 г. |
28Наблюдать | CVE-2025-37183Эксплойта нет | Authenticated SQL Injection in EdgeConnect SD-WAN Orchestrator Web-Based Management Interfacearubanetworks · edgeconnect sd-wan orchestrator · CWE-89 | Высокая7,2 | — | 0,5 % | 14 янв. 2026 г. |
28Наблюдать | CVE-2025-37182Эксплойта нет | Authenticated SQL Injection in EdgeConnect SD-WAN Orchestrator Web-Based Management Interfacearubanetworks · edgeconnect sd-wan orchestrator · CWE-89 | Высокая7,2 | — | 0,5 % | 14 янв. 2026 г. |
28Наблюдать | CVE-2025-37181Эксплойта нет | Authenticated SQL Injection in EdgeConnect SD-WAN Orchestrator Web-Based Management Interfacearubanetworks · edgeconnect sd-wan orchestrator · CWE-89 | Высокая7,2 | — | 0,5 % | 14 янв. 2026 г. |
28Наблюдать | CVE-2025-37173Эксплойта нет | Improper Input Handling Vulnerability in Authenticated Configuration API Endpoint (AOS-10/AOS-8 Web UI)arubanetworks · arubaos · CWE-20 | Высокая7,2 | — | 0,4 % | 13 янв. 2026 г. |
- CVE-2026-7117217Наблюдать
Dell Cloud Disaster Recovery, versions 20.2 and prior, contain a Server-Side Request Forgery (SSRF) vulnerability.
СредняяCVSS 4,3Эксплойта нетEPSS 0 %dell · cloud disaster recovery26 авг. 2026 г.
- CVE-2026-4487928Наблюдать
Authenticated Command Injection allows arbitrary command execution in CLI Interface
ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %hewlett packard enterprise (hpe) · edgeconnect sd-wan gateway (ecos)21 июл. 2026 г.
- CVE-2026-4487828Наблюдать
Authenticated Path Traversal allows Unauthorized Access in Web Interface
ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %hewlett packard enterprise (hpe) · edgeconnect sd-wan gateway (ecos)21 июл. 2026 г.
- CVE-2026-6345428Наблюдать
Authenticated Path Traversal Vulnerability Leads to Remote Code Execution in AOS-CX
ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %hpe · arubaos-cx21 июл. 2026 г.
- CVE-2026-4488035Наблюдать
Low-Privilege Authenticated Buffer Overflow Vulnerabilities lead to Remote Code Execution in AOS-CX
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %hpe · arubaos-cx21 июл. 2026 г.
- CVE-2026-4486635Наблюдать
Authenticated Command Injection Vulnerabilities in the Web-Based Management Interface of AOS-8 and AOS-10
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %arubanetworks · arubaos12 мая 2026 г.
- CVE-2026-4486528Наблюдать
Authenticated Command Injection Vulnerabilities in the Web-Based Management Interface of AOS-8 and AOS-10
ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %arubanetworks · arubaos12 мая 2026 г.
- CVE-2026-2382128Наблюдать
Inconsistent input filtering allows Authenticated Command Injection in AOS-10 CLI
ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %arubanetworks · arubaos12 мая 2026 г.
- CVE-2026-2382028Наблюдать
Inconsistent input filtering allows Authenticated Command Injection in AOS-8 Instant and AOS-10 CLI
ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %arubanetworks · arubaos12 мая 2026 г.
- CVE-2026-2381635Наблюдать
Authenticated Command Injection found in admin AOS-CX CLI command
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %hpe · arubaos-cx11 мар. 2026 г.
- CVE-2026-2381528Наблюдать
Authenticated Command Injection found in AOS-CX Administrative CLI Command
ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %hpe · arubaos-cx11 мар. 2026 г.
- CVE-2026-2381339Наблюдать
Authentication Bypass in Web Interface allows Unauthenticated Admin Password Reset
КритическаяCVSS 9,8Proof of conceptEPSS 1 %hpe · arubaos-cx11 мар. 2026 г.
- CVE-2025-3718328Наблюдать
Authenticated SQL Injection in EdgeConnect SD-WAN Orchestrator Web-Based Management Interface
ВысокаяCVSS 7,2Эксплойта нетEPSS 0 %arubanetworks · edgeconnect sd-wan orchestrator14 янв. 2026 г.
- CVE-2025-3718228Наблюдать
Authenticated SQL Injection in EdgeConnect SD-WAN Orchestrator Web-Based Management Interface
ВысокаяCVSS 7,2Эксплойта нетEPSS 0 %arubanetworks · edgeconnect sd-wan orchestrator14 янв. 2026 г.
- CVE-2025-3718128Наблюдать
Authenticated SQL Injection in EdgeConnect SD-WAN Orchestrator Web-Based Management Interface
ВысокаяCVSS 7,2Эксплойта нетEPSS 0 %arubanetworks · edgeconnect sd-wan orchestrator14 янв. 2026 г.
- CVE-2025-3717328Наблюдать
Improper Input Handling Vulnerability in Authenticated Configuration API Endpoint (AOS-10/AOS-8 Web UI)
ВысокаяCVSS 7,2Эксплойта нетEPSS 0 %arubanetworks · arubaos13 янв. 2026 г.