CVE-2014-7299: Arubanetworks Arubaos

High severity, CVSS 7.5. EPSS: 2.1% chance of exploitation in the next 30 days.

Unspecified vulnerability in administrative interfaces in ArubaOS 6.3.1.11, 6.3.1.11-FIPS, 6.4.2.1, and 6.4.2.1-FIPS on Aruba controllers allows remote attackers to bypass authentication, and obtain potentially sensitive information or add guest accounts, via an SSH session.

Affected products

Published 2014-10-08. Last modified 2026-06-17.