cvelist/2020/7xxx/CVE-2020-7119.json

62 lines
2.0 KiB
JSON
Raw Normal View History

2020-01-16 17:01:12 +00:00
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2020-7119",
2020-09-04 12:01:27 +00:00
"ASSIGNER": "security-alert@hpe.com",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "n/a",
"product": {
"product_data": [
{
"product_name": "Aruba ALE ClearPass C1000 S-1200 R4 HW-Based Appliance",
"version": {
"version_data": [
{
"version_value": "Firmware 2.1.0.2 and earlier"
}
]
}
}
]
}
}
]
}
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "Remote Arbitrary File Modification "
}
]
}
]
},
"references": {
"reference_data": [
{
"refsource": "MISC",
"name": "https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2020-008.txt",
"url": "https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2020-008.txt"
}
]
2020-01-16 17:01:12 +00:00
},
"description": {
"description_data": [
{
"lang": "eng",
2020-09-09 15:01:35 +00:00
"value": "A vulnerability exists in the Aruba Analytics and Location Engine (ALE) web management interface 2.1.0.2 and earlier firmware that allows an already authenticated administrative user to arbitrarily modify files as an underlying privileged operating system user."
2020-01-16 17:01:12 +00:00
}
]
}
}