CVE-2021-25151
HIGHAruba AirWave <8.2.12.1 - SSRF
Title source: llmDescription
A remote insecure deserialization vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1. Aruba has released patches for AirWave Management Platform that address this security vulnerability.
Scores
CVSS v3
8.8
EPSS
0.0568
EPSS Percentile
90.3%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Classification
CWE
CWE-502
Status
published
Affected Products (1)
arubanetworks/airwave
< 8.2.12.1
Timeline
Published
Apr 28, 2021
Tracked Since
Feb 18, 2026