CVE-2015-2201: OS Command Injection
Published Sep 5, 2023
·Updated
Aruba AirWave before 7.7.14.2 and 8.x before 8.0.7 allows VisualRF remote OS command execution and file disclosure by administrative users.
Affected Software
2 affected components
Arubanetworks Airwave>=7.0.0<7.7.14.2
HP Airwave>=8.0.0.0<8.0.7
Event History
Sep 5, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for Aruba AirWave?
The vulnerability ID for Aruba AirWave is CVE-2015-2201.
2
What is the severity of CVE-2015-2201?
The severity of CVE-2015-2201 is high, with a severity value of 7.2.
3
What is the affected software version range for CVE-2015-2201?
The affected software version range for CVE-2015-2201 is Aruba AirWave before 7.7.14.2 and 8.x before 8.0.7.
4
What is the CWE number for CVE-2015-2201?
The CWE number for CVE-2015-2201 is 78.
5
How can I fix the vulnerability in Aruba AirWave?
To fix the vulnerability in Aruba AirWave, you should update to version 7.7.14.2 or 8.0.7 or later.