CVE-2022-28624
4.8
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
Exploitability: 1.7 / Impact: 2.7
Source: NVD
Description
A potential security vulnerability has been identified in certain HPE FlexNetwork and FlexFabric switch products. The vulnerability could be remotely exploited to allow cross site scripting (XSS). HPE has made the following software updates to resolve the vulnerability. HPE FlexNetwork 5130EL_7.10.R3507P02 and HPE FlexFabric 5945_7.10.R6635.
Affected (2)
Products: Hpe: Flexnetwork 5130 Ei Firmware, Flexfabric 5945 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 7.10.r3507p02 |
| Running on/with | Platform Versions |
|---|---|
Hpe Flexnetwork 5130 Ei | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 7.10.r6635 |
| Running on/with | Platform Versions |
|---|---|
Hpe Flexfabric 5945 | All versions |
References (2)
Source: security-alert@hpe.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.