CVE-2024-54008: Hewlett Packard Enterprise HPE HPE Aruba Networking Airwave Management Platform
High severity, CVSS 7.2. EPSS: 0.8% chance of exploitation in the next 30 days.
An authenticated Remote Code Execution (RCE) vulnerability exists in the AirWave CLI. Successful exploitation of this vulnerability could allow a remote authenticated threat actor to run arbitrary commands as a privileged user on the underlying host.
Affected products
- Hewlett Packard Enterprise HPE HPE Aruba Networking Airwave Management Platform: from 8.0.0.0, up to and including 8.3.0.3
Published 2024-12-10. Last modified 2026-06-17.