Aruba mobility conductor (formerly mobility master); aruba mobility controllers; wlan gateways and sd-wan gateways managed by aruba central
This hub aggregates every CVE we track for Aruba mobility conductor (formerly mobility master); aruba mobility controllers; wlan gateways and sd-wan gateways managed by aruba central, a product in the hardware firmware space. Use it to gauge the current risk picture and drill into individual advisories.
67
CVEs tracked
11
Critical
31
High
0
In CISA KEV
Severity distribution
HIGH31MEDIUM24CRITICAL11LOW1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-102026-09
Latest CVEs
The 15 most recently published vulnerabilities affecting Aruba mobility conductor (formerly mobility master); aruba mobility controllers; wlan gateways and sd-wan gateways managed by aruba central.
- CVE-2024-33518An unauthenticated Denial-of-Service (DoS) vulnerability exists in the Radio Frequency Manager service accessed via the PAPI protocol. Successful exploitation of this vulnerability results in the a...5.3
- CVE-2024-33517An unauthenticated Denial-of-Service (DoS) vulnerability exists in the Radio Frequency Manager service accessed via the PAPI protocol. Successful exploitation of this vulnerability results in the a...5.3
- CVE-2024-33516An unauthenticated Denial of Service (DoS) vulnerability exists in the Auth service accessed via the PAPI protocol provided by ArubaOS. Successful exploitation of this vulnerability results in the...5.3
- CVE-2024-33515Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the AP Management service accessed via the PAPI protocol. Successful exploitation of these vulnerabilities results in the ability to...5.3
- CVE-2024-33514Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the AP Management service accessed via the PAPI protocol. Successful exploitation of these vulnerabilities results in the ability to...5.3
- CVE-2024-33513Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the AP Management service accessed via the PAPI protocol. Successful exploitation of these vulnerabilities results in the ability to...5.9
- CVE-2024-33512There is a buffer overflow vulnerability in the underlying Local User Authentication Database service that could lead to unauthenticated remote code execution by sending specially crafted packets d...9.8
- CVE-2024-33511There is a buffer overflow vulnerability in the underlying Automatic Reporting service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the ...9.8
- CVE-2024-26305There is a buffer overflow vulnerability in the underlying Utility daemon that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's...9.8
- CVE-2024-26304There is a buffer overflow vulnerability in the underlying L2/L3 Management service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAP...9.8
- CVE-2023-35979Unauthenticated Buffer Overflow Vulnerability in ArubaOS Web-Based Management Interface5.3
- CVE-2023-35978Reflected Cross-Site Scripting (XSS) in ArubaOS Web-based Management Interface6.1
- CVE-2023-35977Authenticated Sensitive Information Disclosure in ArubaOS Command Line Interface6.5
- CVE-2023-35976Authenticated Sensitive Information Disclosure in ArubaOS Command Line Interface6.5
- CVE-2023-35975Authenticated Path Traversal in ArubaOS Command Line Interface Allows for Arbitrary File Deletion6.5
Product normalization is registry-driven with AI assist and human review. How it works