CVE-2024-54008: Hewlett Packard Enterprise HPE HPE Aruba Networking Airwave Management Platform

High severity, CVSS 7.2. EPSS: 0.8% chance of exploitation in the next 30 days.

An authenticated Remote Code Execution (RCE) vulnerability exists in the AirWave CLI. Successful exploitation of this vulnerability could allow a remote authenticated threat actor to run arbitrary commands as a privileged user on the underlying host.

Affected products

Published 2024-12-10. Last modified 2026-06-17.