CVE-2014-7299: Arubanetworks Arubaos
High severity, CVSS 7.5. EPSS: 2.1% chance of exploitation in the next 30 days.
Unspecified vulnerability in administrative interfaces in ArubaOS 6.3.1.11, 6.3.1.11-FIPS, 6.4.2.1, and 6.4.2.1-FIPS on Aruba controllers allows remote attackers to bypass authentication, and obtain potentially sensitive information or add guest accounts, via an SSH session.
Affected products
- Arubanetworks Arubaos: version 6.3.11 only; version 6.4.2.1 only
Published 2014-10-08. Last modified 2026-06-17.