CVE Vulnerabilities

CVE-2002-0250

Published: May 29, 2002 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Web configuration utility in HP AdvanceStack hubs J3200A through J3210A with firmware version A.03.07 and earlier, allows unauthorized users to bypass authentication via a direct HTTP request to the web_access.html file, which allows the user to change the switchs configuration and modify the administrator password.

Affected Software

NameVendorStart VersionEnd Version
Advancestack_10base-t_switching_hub_j3200aHpa.03.07 (including)a.03.07 (including)
Advancestack_10base-t_switching_hub_j3201aHpa.03.07 (including)a.03.07 (including)
Advancestack_10base-t_switching_hub_j3202aHpa.03.07 (including)a.03.07 (including)
Advancestack_10base-t_switching_hub_j3203aHpa.03.07 (including)a.03.07 (including)
Advancestack_10base-t_switching_hub_j3204aHpa.03.07 (including)a.03.07 (including)
Advancestack_10base-t_switching_hub_j3205aHpa.03.07 (including)a.03.07 (including)
Advancestack_10base-t_switching_hub_j3210aHpa.03.07 (including)a.03.07 (including)

References