Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Aruba Mobility Conductor (formerly Mobility Master); Aruba Mobility Controllers; WLAN Gateways and SD-WAN Gateways managed by Aruba Central — Vulnerabilities & Security Advisories 67

All 67 CVE vulnerabilities found in Aruba Mobility Conductor (formerly Mobility Master); Aruba Mobility Controllers; WLAN Gateways and SD-WAN Gateways managed by Aruba Central, with AI-generated Chinese analysis, references, and POCs.

This page catalogs Common Weakness Enumeration (CWE) vulnerabilities affecting Aruba Mobility Conductor (formerly Mobility Master), Aruba Mobility Controllers, and WLAN Gateways or SD-WAN Gateways managed by Aruba Central. It aggregates security flaws identified across these specific network infrastructure components, ranging from legacy controller software to modern cloud-managed gateway appliances. The collection spans historical and recent vulnerability disclosures, providing a comprehensive view of security weaknesses impacting this HPE Aruba Networking ecosystem. Here, you can track Aruba’s security advisories for these specific devices to stay informed about patch availability and threat landscape shifts. Users can gain a deeper understanding of prevalent vulnerability classes, such as injection flaws or access control errors, that repeatedly affect Aruba’s network operating systems. Additionally, the page allows you to look up a specific product’s vulnerability history, enabling security teams to assess long-term risk exposure and prioritize remediation efforts for their deployed infrastructure. This resource serves as a centralized reference point for distinguishing between critical and informational updates relevant to mobility controllers and centrally managed gateways, helping administrators maintain robust security postures across their wireless and wired network environments without navigating disparate vendor sources.

Vendor: Hewlett Packard Enterprise

CVE IDTitleCVSSSeverityPublished
CVE-2024-33518 Aruba Networks ArubaOS 安全漏洞 5.3 Medium2024-05-01
CVE-2024-33517 Aruba Networks ArubaOS 安全漏洞 5.3 Medium2024-05-01
CVE-2024-33516 Aruba Networks ArubaOS 安全漏洞 5.3 Medium2024-05-01
CVE-2024-33515 Aruba Networks ArubaOS 安全漏洞 5.3 Medium2024-05-01
CVE-2024-33514 Aruba Networks ArubaOS 安全漏洞 5.3 Medium2024-05-01
CVE-2024-33513 Aruba Networks ArubaOS 安全漏洞 5.9 Medium2024-05-01
CVE-2024-33512 Aruba Networks ArubaOS 安全漏洞 9.8 Critical2024-05-01
CVE-2024-33511 Aruba Networks ArubaOS 安全漏洞 9.8 Critical2024-05-01
CVE-2024-26305 Aruba Networks ArubaOS 安全漏洞 9.8 Critical2024-05-01
CVE-2024-26304 Aruba Networks ArubaOS 安全漏洞 9.8 Critical2024-05-01
CVE-2023-35979 Unauthenticated Buffer Overflow Vulnerability in ArubaOS Web-Based Management Interface 5.3 Medium2023-07-05
CVE-2023-35978 Reflected Cross-Site Scripting (XSS) in ArubaOS Web-based Management Interface 6.1 Medium2023-07-05
CVE-2023-35977 Authenticated Sensitive Information Disclosure in ArubaOS Command Line Interface 6.5 Medium2023-07-05
CVE-2023-35976 Authenticated Sensitive Information Disclosure in ArubaOS Command Line Interface 6.5 Medium2023-07-05
CVE-2023-35975 Authenticated Path Traversal in ArubaOS Command Line Interface Allows for Arbitrary File Deletion 6.5 Medium2023-07-05
CVE-2023-35974 Authenticated Remote Command Execution in the ArubaOS Command Line Interface 7.2 High2023-07-05
CVE-2023-35973 Authenticated Remote Command Execution in the ArubaOS Command Line Interface 7.2 High2023-07-05
CVE-2023-35972 Authenticated Remote Command Execution in ArubaOS Web-based Management Interface 7.2 High2023-07-05
CVE-2023-35971 Unauthenticated Stored Cross-Site Scripting (XSS) in ArubaOS Web-based Management Interface 8.8 High2023-07-05
CVE-2023-22778 Authenticated Stored Cross-Site Scripting 4.8 Medium2023-02-28
CVE-2023-22777 Authenticated Information Disclosure in ArubaOS Web-based Management Interface 4.9 Medium2023-02-28
CVE-2023-22776 Authenticated Remote Path Traversal in ArubaOS Command Line Interface Allows for Arbitrary File Read 4.9 Medium2023-02-28
CVE-2023-22775 Authenticated Sensitive Information Disclosure in ArubaOS Command Line Interface 6.5 Medium2023-02-28
CVE-2023-22774 Authenticated Path Traversal in ArubaOS Command Line Interface Allows for Arbitrary File Deletion. 7.2 High2023-02-28
CVE-2023-22773 Authenticated Path Traversal in ArubaOS Command Line Interface Allows for Arbitrary File Deletion. 7.2 High2023-02-28
CVE-2023-22772 Authenticated Path Traversal in ArubaOS Web-based Management Interface Allows for Arbitrary File Deletion 6.5 Medium2023-02-28
CVE-2023-22771 Insufficient Session Expiration in ArubaOS Command Line Interface 6.8 Medium2023-02-28
CVE-2023-22770 Authenticated Remote Command Execution in the ArubaOS Command Line Interface 7.2 High2023-02-28
CVE-2023-22769 Authenticated Remote Command Execution in the ArubaOS Command Line Interface 7.2 High2023-02-28
CVE-2023-22768 Authenticated Remote Command Execution in the ArubaOS Command Line Interface 7.2 High2023-02-28

All 67 known CVE vulnerabilities affecting Aruba Mobility Conductor (formerly Mobility Master); Aruba Mobility Controllers; WLAN Gateways and SD-WAN Gateways managed by Aruba Central with full Chinese analysis, references, and POCs where available.