SecAlerts
arubanetworks logo

arubanetworks

Security Risk Profile

59
/100
medium

Security Risk Score

Comprehensive risk assessment based on 584 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from May 16, 2008 to present

584
Total CVEs
412
Critical+High
1
Exploited
388
Unpatched

Threat Assessment

Avg CVSS
7.6
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
388
Critical/High
Risk Level
59/100
medium
⚠️ 1 Active Exploits📈 27 in Last 30 Days

Severity Distribution

Critical
144
High
268
Medium
170
Low
2

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
30

Age Distribution

Common Weaknesses (CWE)

1
Command Injection
117
2
OS Command Injection
77
3
XSS
53
4
SQL Injection
47
5
Buffer Overflow
43

Most Affected Products

1. Arubanetworks Arubaos895
2. Arubanetworks Clearpass Policy Manager589
3. Arubanetworks Aruba Edgeconnect Enterprise Orchestrator233
4. Arubanetworks Instant165
5. HP Instantos135

Recent Vulnerabilities

See more →
CVE-2026-44871
CVSS 8.8high

Authenticated Command Injection Vulnerabilities in Command Line Interface (CLI) Service Accessed by PAPI Protocol of AOS-8 and AOS-10 Operating Systems

5/12/2026🔧 No Patch
CVE-2026-44873
CVSS 5.4medium

Insufficient Session Invalidation on User Account Deactivation in AOS-8 Operating System

5/12/2026🔧 No Patch
CVE-2026-44874
CVSS 4.9medium

Authenticated Arbitrary File Download via AOS-10 Web-Based Management Interface

5/12/2026🔧 No Patch
CVE-2026-44872
CVSS 7.2high

Authenticated Arbitrary File Upload via Command Injection in AOS-8 AND AOS-10 Web-Based Management Interface

5/12/2026🔧 No Patch
CVE-2026-44870
CVSS 8.8high

Authenticated Command Injection Vulnerabilities in Command Line Interface (CLI) Service Accessed by PAPI Protocol of AOS-8 and AOS-10 Operating Systems

5/12/2026🔧 No Patch
CVE-2026-44869
CVSS 8.8high

Authenticated Command Injection Vulnerabilities in the Web-Based Management Interface of AOS-8 and AOS-10

5/12/2026🔧 No Patch
CVE-2026-44868
CVSS 8.8high

Authenticated Command Injection Vulnerabilities in the Web-Based Management Interface of AOS-8 and AOS-10

5/12/2026🔧 No Patch
CVE-2026-44867
CVSS 8.8high

Authenticated Command Injection Vulnerabilities in the Web-Based Management Interface of AOS-8 and AOS-10

5/12/2026🔧 No Patch
CVE-2026-44866
CVSS 8.8high

Authenticated Command Injection Vulnerabilities in the Web-Based Management Interface of AOS-8 and AOS-10

5/12/2026🔧 No Patch
CVE-2026-44865
CVSS 7.2high

Authenticated Command Injection Vulnerabilities in the Web-Based Management Interface of AOS-8 and AOS-10

5/12/2026🔧 No Patch

Monitor arubanetworks in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.

arubanetworks Security Vulnerabilities & Risk Score | 584 CVEs | SecAlerts - SecAlerts