📦 Airwave

by Arubanetworks

🔍 What is Airwave?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-37163

HIGH CVSS 7.2 Nov 18, 2025

This CVE describes a command injection vulnerability in HPE Aruba Networking Airwave Platform's CLI that allows authenticated attackers to execute arbitrary OS commands with elevated privileges. Organ...

CVE-2015-2202

HIGH CVSS 7.2 Sep 5, 2023

This vulnerability allows administrative users of Aruba AirWave management systems to escalate their privileges to root on the underlying operating system. It affects organizations using Aruba AirWave...

CVE-2021-25167

HIGH CVSS 8.8 Apr 29, 2021

This vulnerability allows remote attackers to execute arbitrary operating system commands on Aruba AirWave Management Platform systems without authentication. It affects organizations using AirWave Ma...

CVE-2021-25163

HIGH CVSS 8.1 Apr 29, 2021

This CVE describes an XML External Entity (XXE) vulnerability in Aruba AirWave Management Platform that allows remote attackers to read arbitrary files on the system or conduct server-side request for...

CVE-2021-25152

HIGH CVSS 7.2 Apr 28, 2021

This CVE describes a remote insecure deserialization vulnerability in Aruba AirWave Management Platform that allows attackers to execute arbitrary code on affected systems. Organizations using AirWave...

CVE-2021-25165

HIGH CVSS 8.1 Apr 28, 2021

This CVE describes an XML External Entity (XXE) vulnerability in Aruba AirWave Management Platform that allows remote attackers to read arbitrary files on the system or conduct server-side request for...

CVE-2021-25151

HIGH CVSS 8.8 Apr 28, 2021

This vulnerability allows remote attackers to execute arbitrary code on Aruba AirWave Management Platform systems by exploiting insecure deserialization. Attackers can achieve remote code execution wi...

CVE-2021-25154

HIGH CVSS 7.5 Apr 28, 2021

A remote privilege escalation vulnerability in Aruba AirWave Management Platform allows attackers to gain elevated privileges on affected systems. This affects organizations running AirWave Management...

CVE-2021-26963

HIGH CVSS 7.2 Mar 5, 2021

This vulnerability allows remote authenticated users to execute arbitrary commands on Aruba AirWave Management Platform systems through CLI vulnerabilities. Attackers can gain root access on the under...

CVE-2021-26962

HIGH CVSS 7.2 Mar 5, 2021

CVE-2021-26962 is a remote authenticated command injection vulnerability in Aruba AirWave Management Platform that allows authenticated attackers to execute arbitrary commands as root on the underlyin...

CVE-2021-26960

HIGH CVSS 8.8 Mar 5, 2021

This CSRF vulnerability in Aruba AirWave Management Platform allows unauthenticated attackers to trick authenticated users into performing unauthorized actions. Attackers can craft malicious links tha...