« Back to list

HP

HP Airwave: vulnerabilities and CVEs

HP Airwave has 6 published vulnerabilities, 0 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.

CVEs6
Last 12 months0
Critical0
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2015-2202High (7.2)0.85%—Sep 5, 2023
Aruba AirWave before 7.7.14.2 and 8.x before 8.0.7 allows administrative users to escalate privileges to root on the underlying OS.
CVE-2015-2201High (7.2)1.2%—Sep 5, 2023
Aruba AirWave before 7.7.14.2 and 8.x before 8.0.7 allows VisualRF remote OS command execution and file disclosure by administrative users.
CVE-2015-1391High (8.8)0.38%—Sep 5, 2023
Aruba AirWave before 8.0.7 allows bypass of a CSRF protection mechanism.
CVE-2015-1390Medium (6.1)0.42%—Sep 5, 2023
Aruba AirWave before 8.0.7 allows XSS attacks agsinat an administrator.
CVE-2016-8527Medium (6.1)13%—Aug 6, 2018
Aruba Airwave all versions up to, but not including, 8.2.3.1 is vulnerable to a reflected cross-site scripting (XSS). The vulnerability is present in the VisualRF component of AirWave. By exploiting this vulnerability,…
CVE-2016-8526High (8.8)9.8%—Aug 6, 2018
Aruba Airwave all versions up to, but not including, 8.2.3.1 is vulnerable to an XML external entities (XXE). XXEs are a way to permit XML parsers to access storage that exist on external systems. If an unprivileged…

Other products by HP