CVE-2002-0250

Web configuration utility in HP AdvanceStack hubs J3200A through J3210A with firmware version A.03.07 and earlier, allows unauthorized users to bypass authentication via a direct HTTP request to the web_access.html file, which allows the user to change the switch's configuration and modify the administrator password.
Configurations

Configuration 1 (hide)

OR cpe:2.3:h:hp:advancestack_10base-t_switching_hub_j3200a:a.03.07:*:*:*:*:*:*:*
cpe:2.3:h:hp:advancestack_10base-t_switching_hub_j3201a:a.03.07:*:*:*:*:*:*:*
cpe:2.3:h:hp:advancestack_10base-t_switching_hub_j3202a:a.03.07:*:*:*:*:*:*:*
cpe:2.3:h:hp:advancestack_10base-t_switching_hub_j3203a:a.03.07:*:*:*:*:*:*:*
cpe:2.3:h:hp:advancestack_10base-t_switching_hub_j3204a:a.03.07:*:*:*:*:*:*:*
cpe:2.3:h:hp:advancestack_10base-t_switching_hub_j3205a:a.03.07:*:*:*:*:*:*:*
cpe:2.3:h:hp:advancestack_10base-t_switching_hub_j3210a:a.03.07:*:*:*:*:*:*:*

History

No history.

Information

Published : 2002-05-29 04:00

Updated : 2024-02-28 10:24


NVD link : CVE-2002-0250

Mitre link : CVE-2002-0250

CVE.ORG link : CVE-2002-0250


JSON object : View

Products Affected

hp

  • advancestack_10base-t_switching_hub_j3203a
  • advancestack_10base-t_switching_hub_j3201a
  • advancestack_10base-t_switching_hub_j3210a
  • advancestack_10base-t_switching_hub_j3202a
  • advancestack_10base-t_switching_hub_j3205a
  • advancestack_10base-t_switching_hub_j3200a
  • advancestack_10base-t_switching_hub_j3204a