ZeroHour

CVE-2025-37163

CVSS 3.1
7.2 high
EPSS
<1%p60
Published
()
Modified
Description

A command injection vulnerability has been identified in the command line interface of the HPE Aruba Networking Airwave Platform. An authenticated attacker could exploit this vulnerability to execute arbitrary operating system commands with elevated privileges on the underlying operating system.

Vendors
arubanetworks
Products
airwave
Weakness
CWE-77, CWE-78
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.