moonv
16 kredili kayıt · son 12 ayda 16 · 0 tanesi CISA KEV’de
Adlar CNA kayıtlarındaki serbest metindir; aynı kişi farklı yazımlarla ayrı görünebilir. Düzeltme için bize yazın.
Kredili kayıtlar
Araştırmacılar| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
17İzleyin | CVE-2026-71172İstismar yok | Dell Cloud Disaster Recovery, versions 20.2 and prior, contain a Server-Side Request Forgery (SSRF) vulnerability.dell · cloud disaster recovery · CWE-918 | Orta4,3 | — | %0,3 | 26 Ağu 2026 |
28İzleyin | CVE-2026-44879İstismar yok | Authenticated Command Injection allows arbitrary command execution in CLI Interfacehewlett packard enterprise (hpe) · edgeconnect sd-wan gateway (ecos) · CWE-77 | Yüksek7,2 | — | %1,5 | 21 Tem 2026 |
28İzleyin | CVE-2026-44878İstismar yok | Authenticated Path Traversal allows Unauthorized Access in Web Interfacehewlett packard enterprise (hpe) · edgeconnect sd-wan gateway (ecos) · CWE-377 | Yüksek7,2 | — | %0,6 | 21 Tem 2026 |
28İzleyin | CVE-2026-63454İstismar yok | Authenticated Path Traversal Vulnerability Leads to Remote Code Execution in AOS-CXhpe · arubaos-cx · CWE-22 | Yüksek7,2 | — | %0,9 | 21 Tem 2026 |
35İzleyin | CVE-2026-44880İstismar yok | Low-Privilege Authenticated Buffer Overflow Vulnerabilities lead to Remote Code Execution in AOS-CXhpe · arubaos-cx · CWE-120 | Yüksek8,8 | — | %0,8 | 21 Tem 2026 |
35İzleyin | CVE-2026-44866İstismar yok | Authenticated Command Injection Vulnerabilities in the Web-Based Management Interface of AOS-8 and AOS-10arubanetworks · arubaos · CWE-77 | Yüksek8,8 | — | %1,4 | 12 May 2026 |
28İzleyin | CVE-2026-44865İstismar yok | Authenticated Command Injection Vulnerabilities in the Web-Based Management Interface of AOS-8 and AOS-10arubanetworks · arubaos · CWE-77 | Yüksek7,2 | — | %1,5 | 12 May 2026 |
28İzleyin | CVE-2026-23821İstismar yok | Inconsistent input filtering allows Authenticated Command Injection in AOS-10 CLIarubanetworks · arubaos · CWE-78 | Yüksek7,2 | — | %0,6 | 12 May 2026 |
28İzleyin | CVE-2026-23820İstismar yok | Inconsistent input filtering allows Authenticated Command Injection in AOS-8 Instant and AOS-10 CLIarubanetworks · arubaos · CWE-78 | Yüksek7,2 | — | %0,6 | 12 May 2026 |
35İzleyin | CVE-2026-23816İstismar yok | Authenticated Command Injection found in admin AOS-CX CLI commandhpe · arubaos-cx · CWE-78 | Yüksek8,8 | — | %1,2 | 11 Mar 2026 |
28İzleyin | CVE-2026-23815İstismar yok | Authenticated Command Injection found in AOS-CX Administrative CLI Commandhpe · arubaos-cx · CWE-77 | Yüksek7,2 | — | %0,9 | 11 Mar 2026 |
39İzleyin | CVE-2026-23813Kavram kanıtı | Authentication Bypass in Web Interface allows Unauthenticated Admin Password Resethpe · arubaos-cx · CWE-287 | Kritik9,8 | — | %0,7 | 11 Mar 2026 |
28İzleyin | CVE-2025-37183İstismar yok | Authenticated SQL Injection in EdgeConnect SD-WAN Orchestrator Web-Based Management Interfacearubanetworks · edgeconnect sd-wan orchestrator · CWE-89 | Yüksek7,2 | — | %0,5 | 14 Oca 2026 |
28İzleyin | CVE-2025-37182İstismar yok | Authenticated SQL Injection in EdgeConnect SD-WAN Orchestrator Web-Based Management Interfacearubanetworks · edgeconnect sd-wan orchestrator · CWE-89 | Yüksek7,2 | — | %0,5 | 14 Oca 2026 |
28İzleyin | CVE-2025-37181İstismar yok | Authenticated SQL Injection in EdgeConnect SD-WAN Orchestrator Web-Based Management Interfacearubanetworks · edgeconnect sd-wan orchestrator · CWE-89 | Yüksek7,2 | — | %0,5 | 14 Oca 2026 |
28İzleyin | CVE-2025-37173İstismar yok | Improper Input Handling Vulnerability in Authenticated Configuration API Endpoint (AOS-10/AOS-8 Web UI)arubanetworks · arubaos · CWE-20 | Yüksek7,2 | — | %0,4 | 13 Oca 2026 |
- CVE-2026-7117217İzleyin
Dell Cloud Disaster Recovery, versions 20.2 and prior, contain a Server-Side Request Forgery (SSRF) vulnerability.
OrtaCVSS 4,3İstismar yokEPSS %0dell · cloud disaster recovery26 Ağu 2026
- CVE-2026-4487928İzleyin
Authenticated Command Injection allows arbitrary command execution in CLI Interface
YüksekCVSS 7,2İstismar yokEPSS %1hewlett packard enterprise (hpe) · edgeconnect sd-wan gateway (ecos)21 Tem 2026
- CVE-2026-4487828İzleyin
Authenticated Path Traversal allows Unauthorized Access in Web Interface
YüksekCVSS 7,2İstismar yokEPSS %1hewlett packard enterprise (hpe) · edgeconnect sd-wan gateway (ecos)21 Tem 2026
- CVE-2026-6345428İzleyin
Authenticated Path Traversal Vulnerability Leads to Remote Code Execution in AOS-CX
YüksekCVSS 7,2İstismar yokEPSS %1hpe · arubaos-cx21 Tem 2026
- CVE-2026-4488035İzleyin
Low-Privilege Authenticated Buffer Overflow Vulnerabilities lead to Remote Code Execution in AOS-CX
YüksekCVSS 8,8İstismar yokEPSS %1hpe · arubaos-cx21 Tem 2026
- CVE-2026-4486635İzleyin
Authenticated Command Injection Vulnerabilities in the Web-Based Management Interface of AOS-8 and AOS-10
YüksekCVSS 8,8İstismar yokEPSS %1arubanetworks · arubaos12 May 2026
- CVE-2026-4486528İzleyin
Authenticated Command Injection Vulnerabilities in the Web-Based Management Interface of AOS-8 and AOS-10
YüksekCVSS 7,2İstismar yokEPSS %1arubanetworks · arubaos12 May 2026
- CVE-2026-2382128İzleyin
Inconsistent input filtering allows Authenticated Command Injection in AOS-10 CLI
YüksekCVSS 7,2İstismar yokEPSS %1arubanetworks · arubaos12 May 2026
- CVE-2026-2382028İzleyin
Inconsistent input filtering allows Authenticated Command Injection in AOS-8 Instant and AOS-10 CLI
YüksekCVSS 7,2İstismar yokEPSS %1arubanetworks · arubaos12 May 2026
- CVE-2026-2381635İzleyin
Authenticated Command Injection found in admin AOS-CX CLI command
YüksekCVSS 8,8İstismar yokEPSS %1hpe · arubaos-cx11 Mar 2026
- CVE-2026-2381528İzleyin
Authenticated Command Injection found in AOS-CX Administrative CLI Command
YüksekCVSS 7,2İstismar yokEPSS %1hpe · arubaos-cx11 Mar 2026
- CVE-2026-2381339İzleyin
Authentication Bypass in Web Interface allows Unauthenticated Admin Password Reset
KritikCVSS 9,8Kavram kanıtıEPSS %1hpe · arubaos-cx11 Mar 2026
- CVE-2025-3718328İzleyin
Authenticated SQL Injection in EdgeConnect SD-WAN Orchestrator Web-Based Management Interface
YüksekCVSS 7,2İstismar yokEPSS %0arubanetworks · edgeconnect sd-wan orchestrator14 Oca 2026
- CVE-2025-3718228İzleyin
Authenticated SQL Injection in EdgeConnect SD-WAN Orchestrator Web-Based Management Interface
YüksekCVSS 7,2İstismar yokEPSS %0arubanetworks · edgeconnect sd-wan orchestrator14 Oca 2026
- CVE-2025-3718128İzleyin
Authenticated SQL Injection in EdgeConnect SD-WAN Orchestrator Web-Based Management Interface
YüksekCVSS 7,2İstismar yokEPSS %0arubanetworks · edgeconnect sd-wan orchestrator14 Oca 2026
- CVE-2025-3717328İzleyin
Improper Input Handling Vulnerability in Authenticated Configuration API Endpoint (AOS-10/AOS-8 Web UI)
YüksekCVSS 7,2İstismar yokEPSS %0arubanetworks · arubaos13 Oca 2026