PT-2021-16425 · Aruba · Aruba Airwave Management Platform

Published

2021-04-28

·

Updated

2021-05-12

·

CVE-2021-25152

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Aruba AirWave Management Platform versions prior to 8.2.12.1
Description: A remote insecure deserialization vulnerability was discovered. Aruba has released patches that address this security issue.
Recommendations: For versions prior to 8.2.12.1, apply the released patches to resolve the issue. As a temporary workaround, consider restricting access to the management platform until the patch is applied.

Fix

Deserialization of Untrusted Data

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-25152

Affected Products

Aruba Airwave Management Platform