CVE-2021-26963: Critical severity aruba networks airwave vulnerability
A remote authenticated arbitrary command execution vulnerability was discovered in Aruba AirWave Management Platform version(s): Prior to 8.2.12.0. Vulnerabilities in the AirWave CLI could allow remote authenticated users to run arbitrary commands on the underlying host. A successful exploit could allow an attacker to execute arbitrary commands as root on the underlying operating system leading to full system compromise.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2021-26963.
What is the severity of CVE-2021-26963?
The severity of CVE-2021-26963 is critical with a severity value of 7.2.
What is the affected software of CVE-2021-26963?
The affected software is Aruba AirWave Management Platform version(s) prior to 8.2.12.0.
What is the risk of CVE-2021-26963?
CVE-2021-26963 poses a risk of remote authenticated arbitrary command execution.
How can I fix CVE-2021-26963?
To fix CVE-2021-26963, update the Aruba AirWave Management Platform to version 8.2.12.0 or newer.