CVE-2025-37163
Authenticated Command Injection Vulnerability in HPE Aruba Networking Management Software (AirWave) CLI
A command injection vulnerability has been identified in the command line interface of the HPE Aruba Networking Airwave Platform. An authenticated attacker could exploit this vulnerability to execute arbitrary operating system commands with elevated privileges on the underlying operating system.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Productos afectados
Hewlett Packard Enterprise (HPE) · HPE Aruba Networking Management Software (Airwave)¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →