CVE Vulnerabilities

CVE-2019-5322

Published: Feb 13, 2020 | Modified: Aug 24, 2020
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

A remotely exploitable information disclosure vulnerability is present in Aruba Intelligent Edge Switch models 5400, 3810, 2920, 2930, 2530 with GigT port, 2530 10/100 port, or 2540. The vulnerability impacts firmware 16.08.* before 16.08.0009, 16.09.* before 16.09.0007 and 16.10.* before 16.10.0003. The vulnerability allows an attacker to retrieve sensitive system information. This attack can be carried out without user authentication under very specific conditions.

Affected Software

Name Vendor Start Version End Version
5400r_firmware Arubanetworks 16.08.0 (including) 16.08.0009 (excluding)
5400r_firmware Arubanetworks 16.09.0 (including) 16.09.0007 (excluding)
5400r_firmware Arubanetworks 16.10.0 (including) 16.10.0003 (excluding)

References