VYPR
High severity7.2NVD Advisory· Published Nov 18, 2025· Updated Jun 17, 2026

CVE-2025-37163

CVE-2025-37163

Description

A command injection vulnerability has been identified in the command line interface of the HPE Aruba Networking Airwave Platform. An authenticated attacker could exploit this vulnerability to execute arbitrary operating system commands with elevated privileges on the underlying operating system.

Affected products

3
  • Hewlett Packard Enterprise (HPE)/HPE Aruba Networking Management Software (Airwave)v5
    Range: 8.3.0.0
  • cpe:2.3:a:arubanetworks:airwave:*:*:*:*:*:*:*:*
    Range: <8.3.0.5

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.