High severity7.2NVD Advisory· Published Nov 18, 2025· Updated Jun 17, 2026
CVE-2025-37163
CVE-2025-37163
Description
A command injection vulnerability has been identified in the command line interface of the HPE Aruba Networking Airwave Platform. An authenticated attacker could exploit this vulnerability to execute arbitrary operating system commands with elevated privileges on the underlying operating system.
Affected products
3- Hewlett Packard Enterprise (HPE)/HPE Aruba Networking Management Software (Airwave)v5Range: 8.3.0.0
Patches
Vulnerability mechanics
References
1- support.hpe.com/hpesc/public/docDisplaynvdVendor Advisory
News mentions
0No linked articles in our index yet.