HP ProCurve 5400 zl Switches 'Compact Flash Card' Security Issue

BID:52990

Info

HP ProCurve 5400 zl Switches 'Compact Flash Card' Security Issue

Bugtraq ID: 52990
Class: Unknown
CVE: CVE-2012-0133
Remote: No
Local: Yes
Published: Apr 10 2012 12:00AM
Updated: Apr 10 2012 12:00AM
Credit: HP
Vulnerable: HP Management Module 5400 series zl switch J8726A
HP E5412 zl Switch with Premium Software J9643A
HP E5412 zl Switch Chassis J8698A
HP E5406 zl Switch with Premium Software J9642A
HP E5406 zl Switch Chassis J8697A
HP 5412zl-92GG-PoE+ / 2XG SFP+ v2 Switch J9532A
HP 5412zl-92G-PoE+ / 4G SFP v2 Switch J9540A
HP 5412-96G zl Switch J8700A
HP 5412-92G-PoE+-4SFP zl Switch J9448A
HP 5406zl-44G-PoE+ / 4G SFP v2 Switch J9539A
HP 5406zl-44G-PoE+ / 2XG SFP+ v2 Switch J9533A
HP 5406-48G zl Switch J8699A
HP 5406-44G-PoE+-4SFP zl Switch J9447A
Not Vulnerable:

Discussion

HP ProCurve 5400 zl Switches 'Compact Flash Card' Security Issue

HP ProCurve 5400 zl Switches are prone to a security issue.

Attackers can exploit this issue to infect a users's system.

Exploit / POC

HP ProCurve 5400 zl Switches 'Compact Flash Card' Security Issue

An attacker needs to connect the affected compact flash card to a system in order to infect it.

Solution / Fix

HP ProCurve 5400 zl Switches 'Compact Flash Card' Security Issue

Solution:
The vendor has released fixes. Please see the referenced advisory for details.

References

© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report