HPE Aruba Networking Management Software
cpe:2.3:a:arubanetworks:airwave_network_management:*:*:*:*:*:*:*, +1 more
- <= 8.3.0.4
A command injection vulnerability has been identified in the command line interface of the HPE Aruba Networking AirWave Platform, affecting versions 8.3.0.4 and below. This vulnerability allows authenticated attackers to execute arbitrary operating system commands with elevated privileges on the underlying operating system.
Exploitation of this vulnerability could lead to unauthorized execution of commands with elevated privileges, allowing for arbitrary code execution on the affected system.
Users are advised to upgrade to HPE Aruba Networking Management Software (AirWave) version 8.3.0.5 or above. The updated version is available for download from the HPE Networking Support Portal.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.