CVE-2021-25164: XEE
A remote XML external entity vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1. Aruba has released patches for AirWave Management Platform that address this security vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-25164?
CVE-2021-25164 is a remote XML external entity vulnerability discovered in Aruba AirWave Management Platform prior to version 8.2.12.1.
What is the severity of CVE-2021-25164?
CVE-2021-25164 has a severity rating of medium with a CVSS score of 6.5.
Which software versions are affected by CVE-2021-25164?
Aruba AirWave Management Platform versions prior to 8.2.12.1 are affected by CVE-2021-25164.
How can I fix CVE-2021-25164?
To fix CVE-2021-25164, update your Aruba AirWave Management Platform to version 8.2.12.1 or later.
Where can I find more information about CVE-2021-25164?
You can find more information about CVE-2021-25164 in the Aruba Networks security advisory at the following link: https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2021-010.txt