Skip to main content

Vendor/product archive

arubanetworks / airwave CVEs

Beta · best-effort

36 CVEs tagged to arubanetworks / airwave2 Critical, 23 High, 11 Medium, 0 Low, 0 Unrated.

CVE-2025-37163

Published Nov 18, 2025

A command injection vulnerability has been identified in the command line interface of the HPE Aruba Networking Airwave Platform. An authenticated attacker could exploit this vuln…

CVSS 7.2 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-4896

Published Oct 17, 2023

A vulnerability exists which allows an authenticated attacker to access sensitive information on the AirWave Management Platform web-based management interface. Successful exploit…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-37918

Published Dec 8, 2022

Vulnerabilities in the AirWave Management Platform web-based management interface exist which expose some URLs to a lack of proper access controls. These vulnerabilities could all…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2022-37917

Published Dec 8, 2022

Vulnerabilities in the AirWave Management Platform web-based management interface exist which expose some URLs to a lack of proper access controls. These vulnerabilities could all…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2022-37916

Published Dec 8, 2022

Vulnerabilities in the AirWave Management Platform web-based management interface exist which expose some URLs to a lack of proper access controls. These vulnerabilities could all…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2021-37715

Published Aug 26, 2021

A remote cross-site scripting (XSS) vulnerability was discovered in Aruba AirWave Management Platform version(s): Prior to 8.2.13.0. Aruba has released upgrades for the Aruba AirW…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-29137

Published Apr 29, 2021

A remote URL redirection vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1. Aruba has released patches for AirWave Management Platform…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-25167

Published Apr 29, 2021

A remote unauthorized access vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1. Aruba has released patches for AirWave Management Plat…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-25166

Published Apr 29, 2021

A remote unauthorized access vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1. Aruba has released patches for AirWave Management Plat…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-25163

Published Apr 29, 2021

A remote XML external entity vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1. Aruba has released patches for AirWave Management Plat…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2021-25165

Published Apr 28, 2021

A remote XML external entity vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1. Aruba has released patches for AirWave Management Plat…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2021-25164

Published Apr 28, 2021

A remote XML external entity vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1. Aruba has released patches for AirWave Management Plat…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-25152

Published Apr 28, 2021

A remote insecure deserialization vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1. Aruba has released patches for AirWave Management…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2021-25154

Published Apr 28, 2021

A remote escalation of privilege vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1. Aruba has released patches for AirWave Management…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-25153

Published Apr 28, 2021

A remote SQL injection vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1. Aruba has released patches for AirWave Management Platform t…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2021-25151

Published Apr 28, 2021

A remote insecure deserialization vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1. Aruba has released patches for AirWave Management…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2021-25147

Published Apr 28, 2021

A remote authentication restriction bypass vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1. Aruba has released patches for AirWave M…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2021-26971

Published Mar 5, 2021

A remote authenticated arbitrary command execution vulnerability was discovered in Aruba AirWave Management Platform version(s): Prior to 8.2.12.0. Vulnerabilities in the AirWave…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-26970

Published Mar 5, 2021

A remote authenticated arbitrary command execution vulnerability was discovered in Aruba AirWave Management Platform version(s): Prior to 8.2.12.0. Vulnerabilities in the AirWave…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-26969

Published Mar 5, 2021

A remote authenticated authenticated xml external entity (xxe) vulnerability was discovered in Aruba AirWave Management Platform version(s): Prior to 8.2.12.0. Due to improper res…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-26968

Published Mar 5, 2021

A remote authenticated stored cross-site scripting (xss) vulnerability was discovered in Aruba AirWave Management Platform version(s): Prior to 8.2.12.0. A vulnerability in the we…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-26967

Published Mar 5, 2021

A remote reflected cross-site scripting (xss) vulnerability was discovered in Aruba AirWave Management Platform version(s): Prior to 8.2.12.0. A vulnerability in the web-based man…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-26966

Published Mar 5, 2021

A remote authenticated sql injection vulnerability was discovered in Aruba AirWave Management Platform version(s): Prior to 8.2.12.0. Multiple vulnerabilities in the API of AirWav…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 36 CVEsPage 1 of 2