CVE-2019-5320
Published on: 08/26/2020 12:00:00 AM UTC
Last Modified on: 03/23/2021 11:27:59 PM UTC
Certain versions of 2530 from Arubanetworks contain the following vulnerability:
Aruba Intelligent Edge Switch Series 2540, 2530, 2930F, 2930M, 2920, 5400R, and 3810M with firmware 16.08.* before 16.08.0009, 16.09.* before 16.09.0007, 16.10.* before 16.10.0003 are vulnerable to Cross Site Scripting in the web UI, leading to injection of code.
- CVE-2019-5320 has been assigned by
[email protected] to track the vulnerability - currently rated as MEDIUM severity.
CVSS3 Score: 6.1 - MEDIUM
Attack Vector ⓘ |
Attack Complexity |
Privileges Required |
User Interaction |
---|---|---|---|
NETWORK | LOW | NONE | REQUIRED |
Scope | Confidentiality Impact |
Integrity Impact |
Availability Impact |
CHANGED | LOW | LOW | NONE |
CVSS2 Score: 4.3 - MEDIUM
Access Vector ⓘ |
Access Complexity |
Authentication |
---|---|---|
NETWORK | MEDIUM | NONE |
Confidentiality Impact |
Integrity Impact |
Availability Impact |
NONE | PARTIAL | NONE |
CVE References
Description | Tags ⓘ | Link |
---|---|---|
Vendor Advisory www.arubanetworks.com text/plain |
![]() |
There are currently no QIDs associated with this CVE
Known Affected Configurations (CPE V2.3)
Type | Vendor | Product | Version | Update | Edition | Language |
---|---|---|---|---|---|---|
Hardware
| Arubanetworks | 2530 | - | All | All | All |
Hardware
| Arubanetworks | 2530 | - | All | All | All |
Operating System | Arubanetworks | 2530 Firmware | All | All | All | All |
Operating System | Arubanetworks | 2530 Firmware | All | All | All | All |
Hardware
| Arubanetworks | 2540 | - | All | All | All |
Hardware
| Arubanetworks | 2540 | - | All | All | All |
Operating System | Arubanetworks | 2540 Firmware | All | All | All | All |
Operating System | Arubanetworks | 2540 Firmware | All | All | All | All |
Hardware
| Arubanetworks | 2920 | - | All | All | All |
Hardware
| Arubanetworks | 2920 | - | All | All | All |
Operating System | Arubanetworks | 2920 Firmware | All | All | All | All |
Operating System | Arubanetworks | 2920 Firmware | All | All | All | All |
Hardware
| Arubanetworks | 2930 | - | All | All | All |
Hardware
| Arubanetworks | 2930 | - | All | All | All |
Operating System | Arubanetworks | 2930 Firmware | All | All | All | All |
Operating System | Arubanetworks | 2930 Firmware | All | All | All | All |
Hardware
| Arubanetworks | 3810 | - | All | All | All |
Hardware
| Arubanetworks | 3810 | - | All | All | All |
Operating System | Arubanetworks | 3810 Firmware | All | All | All | All |
Operating System | Arubanetworks | 3810 Firmware | All | All | All | All |
Hardware
| Arubanetworks | 5400r | - | All | All | All |
Hardware
| Arubanetworks | 5400r | - | All | All | All |
Operating System | Arubanetworks | 5400r Firmware | All | All | All | All |
Operating System | Arubanetworks | 5400r Firmware | All | All | All | All |
- cpe:2.3:h:arubanetworks:2530:-:*:*:*:*:*:*:*:
- cpe:2.3:h:arubanetworks:2530:-:*:*:*:*:*:*:*:
- cpe:2.3:o:arubanetworks:2530_firmware:*:*:*:*:*:*:*:*:
- cpe:2.3:o:arubanetworks:2530_firmware:*:*:*:*:*:*:*:*:
- cpe:2.3:h:arubanetworks:2540:-:*:*:*:*:*:*:*:
- cpe:2.3:h:arubanetworks:2540:-:*:*:*:*:*:*:*:
- cpe:2.3:o:arubanetworks:2540_firmware:*:*:*:*:*:*:*:*:
- cpe:2.3:o:arubanetworks:2540_firmware:*:*:*:*:*:*:*:*:
- cpe:2.3:h:arubanetworks:2920:-:*:*:*:*:*:*:*:
- cpe:2.3:h:arubanetworks:2920:-:*:*:*:*:*:*:*:
- cpe:2.3:o:arubanetworks:2920_firmware:*:*:*:*:*:*:*:*:
- cpe:2.3:o:arubanetworks:2920_firmware:*:*:*:*:*:*:*:*:
- cpe:2.3:h:arubanetworks:2930:-:*:*:*:*:*:*:*:
- cpe:2.3:h:arubanetworks:2930:-:*:*:*:*:*:*:*:
- cpe:2.3:o:arubanetworks:2930_firmware:*:*:*:*:*:*:*:*:
- cpe:2.3:o:arubanetworks:2930_firmware:*:*:*:*:*:*:*:*:
- cpe:2.3:h:arubanetworks:3810:-:*:*:*:*:*:*:*:
- cpe:2.3:h:arubanetworks:3810:-:*:*:*:*:*:*:*:
- cpe:2.3:o:arubanetworks:3810_firmware:*:*:*:*:*:*:*:*:
- cpe:2.3:o:arubanetworks:3810_firmware:*:*:*:*:*:*:*:*:
- cpe:2.3:h:arubanetworks:5400r:-:*:*:*:*:*:*:*:
- cpe:2.3:h:arubanetworks:5400r:-:*:*:*:*:*:*:*:
- cpe:2.3:o:arubanetworks:5400r_firmware:*:*:*:*:*:*:*:*:
- cpe:2.3:o:arubanetworks:5400r_firmware:*:*:*:*:*:*:*:*:
No vendor comments have been submitted for this CVE