CVE Vulnerabilities

CVE-2002-0250

Published: May 29, 2002 | Modified: Oct 18, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Web configuration utility in HP AdvanceStack hubs J3200A through J3210A with firmware version A.03.07 and earlier, allows unauthorized users to bypass authentication via a direct HTTP request to the web_access.html file, which allows the user to change the switchs configuration and modify the administrator password.

Affected Software

Name Vendor Start Version End Version
Advancestack_10base-t_switching_hub_j3200a Hp a.03.07 (including) a.03.07 (including)
Advancestack_10base-t_switching_hub_j3201a Hp a.03.07 (including) a.03.07 (including)
Advancestack_10base-t_switching_hub_j3202a Hp a.03.07 (including) a.03.07 (including)
Advancestack_10base-t_switching_hub_j3203a Hp a.03.07 (including) a.03.07 (including)
Advancestack_10base-t_switching_hub_j3204a Hp a.03.07 (including) a.03.07 (including)
Advancestack_10base-t_switching_hub_j3205a Hp a.03.07 (including) a.03.07 (including)
Advancestack_10base-t_switching_hub_j3210a Hp a.03.07 (including) a.03.07 (including)

References