XiaoC
Moonlight Bug Hunter
11 credited records · 0 in the last 12 months · 0 in CISA KEV
Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.
Credited records
Researchers| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
21Monitor | CVE-2024-33518No exploit | An unauthenticated Denial-of-Service (DoS) vulnerability exists in the Radio Frequency Manager service accessed via the PAPI protocol.arubanetworks · arubaos · CWE-121 | Medium5.3 | — | 0.5% | May 1, 2024 |
21Monitor | CVE-2024-25615No exploit | An unauthenticated Denial-of-Service (DoS) vulnerability exists in the Spectrum service accessed via the PAPI protocol in ArubaOS 8.x.arubanetworks · arubaos · CWE-400 | Medium5.3 | — | 0.5% | Mar 5, 2024 |
35Monitor | CVE-2024-21673No exploit | This High severity Remote Code Execution (RCE) vulnerability was introduced in versions 7.13.0 of Confluence Data Center and Server.atlassian · confluence data center · CWE-94 | High8.8 | — | 1.5% | Jan 16, 2024 |
30Monitor | CVE-2023-45624No exploit | An unauthenticated Denial-of-Service (DoS) vulnerability exists in the soft ap daemon accessed via the PAPI protocol.arubanetworks · arubaos | High7.5 | — | 0.9% | Nov 14, 2023 |
30Monitor | CVE-2023-45623No exploit | Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the Wi-Fi Uplink service accessed via the PAPI protocol.arubanetworks · arubaos | High7.5 | — | 0.9% | Nov 14, 2023 |
30Monitor | CVE-2023-45622No exploit | Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the BLE daemon service accessed via the PAPI protocol.arubanetworks · arubaos · CWE-400 | High7.5 | — | 0.9% | Nov 14, 2023 |
30Monitor | CVE-2023-45620No exploit | Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the CLI service accessed via the PAPI protocol.arubanetworks · arubaos | High7.5 | — | 0.9% | Nov 14, 2023 |
32Monitor | CVE-2023-45618No exploit | There are arbitrary file deletion vulnerabilities in the AirWave client service accessed by PAPI (Aruba's access point management protocol).arubanetworks · arubaos | High8.2 | — | 0.7% | Nov 14, 2023 |
32Monitor | CVE-2023-45617No exploit | There are arbitrary file deletion vulnerabilities in the CLI service accessed by PAPI (Aruba's access point management protocol).arubanetworks · arubaos | High8.2 | — | 0.7% | Nov 14, 2023 |
40Plan | CVE-2023-45616No exploit | There is a buffer overflow vulnerability in the underlying AirWave client service that could lead to unauthenticated remote code execution barubanetworks · arubaos · CWE-120 | Critical9.8 | — | 2.1% | Nov 14, 2023 |
40Plan | CVE-2023-45614No exploit | There are buffer overflow vulnerabilities in the underlying CLI service that could lead to unauthenticated remote code execution by sending arubanetworks · arubaos · CWE-120 | Critical9.8 | — | 2.1% | Nov 14, 2023 |
- CVE-2024-3351821Monitor
An unauthenticated Denial-of-Service (DoS) vulnerability exists in the Radio Frequency Manager service accessed via the PAPI protocol.
MediumCVSS 5.3No exploitEPSS 1%arubanetworks · arubaosMay 1, 2024
- CVE-2024-2561521Monitor
An unauthenticated Denial-of-Service (DoS) vulnerability exists in the Spectrum service accessed via the PAPI protocol in ArubaOS 8.x.
MediumCVSS 5.3No exploitEPSS 0%arubanetworks · arubaosMar 5, 2024
- CVE-2024-2167335Monitor
This High severity Remote Code Execution (RCE) vulnerability was introduced in versions 7.13.0 of Confluence Data Center and Server.
HighCVSS 8.8No exploitEPSS 2%atlassian · confluence data centerJan 16, 2024
- CVE-2023-4562430Monitor
An unauthenticated Denial-of-Service (DoS) vulnerability exists in the soft ap daemon accessed via the PAPI protocol.
HighCVSS 7.5No exploitEPSS 1%arubanetworks · arubaosNov 14, 2023
- CVE-2023-4562330Monitor
Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the Wi-Fi Uplink service accessed via the PAPI protocol.
HighCVSS 7.5No exploitEPSS 1%arubanetworks · arubaosNov 14, 2023
- CVE-2023-4562230Monitor
Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the BLE daemon service accessed via the PAPI protocol.
HighCVSS 7.5No exploitEPSS 1%arubanetworks · arubaosNov 14, 2023
- CVE-2023-4562030Monitor
Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the CLI service accessed via the PAPI protocol.
HighCVSS 7.5No exploitEPSS 1%arubanetworks · arubaosNov 14, 2023
- CVE-2023-4561832Monitor
There are arbitrary file deletion vulnerabilities in the AirWave client service accessed by PAPI (Aruba's access point management protocol).
HighCVSS 8.2No exploitEPSS 1%arubanetworks · arubaosNov 14, 2023
- CVE-2023-4561732Monitor
There are arbitrary file deletion vulnerabilities in the CLI service accessed by PAPI (Aruba's access point management protocol).
HighCVSS 8.2No exploitEPSS 1%arubanetworks · arubaosNov 14, 2023
- CVE-2023-4561640Plan
There is a buffer overflow vulnerability in the underlying AirWave client service that could lead to unauthenticated remote code execution b
CriticalCVSS 9.8No exploitEPSS 2%arubanetworks · arubaosNov 14, 2023
- CVE-2023-4561440Plan
There are buffer overflow vulnerabilities in the underlying CLI service that could lead to unauthenticated remote code execution by sending
CriticalCVSS 9.8No exploitEPSS 2%arubanetworks · arubaosNov 14, 2023