CVE-2021-25141
Published Feb 9, 2021
Last updated 4 years ago
Overview
- Description
- A security vulnerability has been identified in in certain HPE and Aruba L2/L3 switch firmware. A data processing error due to improper handling of an unexpected data type in user supplied information to the switch's management interface has been identified. The data processing error could be exploited to cause a crash or reboot in the switch management interface and/or possibly the switch itself leading to local denial of service (DoS). The user must have administrator privileges to exploit this vulnerability.
- Source
- security-alert@hpe.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 4.4
- Impact score
- 3.6
- Exploitability score
- 0.8
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
- Severity
- MEDIUM
CVSS 2.0
- Type
- Primary
- Base score
- 4.9
- Impact score
- 6.9
- Exploitability score
- 3.9
- Vector string
- AV:L/AC:L/Au:N/C:N/I:N/A:C
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:arubanetworks:aruba_5406r_zl2_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "972DC214-38A9-4FD2-B711-F9DDEB728EDB", "versionEndExcluding": "kb.16.10.0012" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:arubanetworks:aruba_5406r_zl2:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "8E982204-9ADC-4242-86C2-A407D6EA7DB0" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:arubanetworks:aruba_5412r_zl2_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B97B63E2-2EB1-41FB-A4F5-50E9E9569B6C", "versionEndExcluding": "kb.16.10.0012" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:arubanetworks:aruba_5412r_zl2:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "8549CD94-50E2-4615-94C2-D76FADFBA3AC" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:arubanetworks:aruba_3810m_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FA016A24-FC1F-4F47-AA50-874251107CF5", "versionEndExcluding": "kb.16.10.0012" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:arubanetworks:aruba_3810m:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "F3CE933B-68BA-45BA-81BD-95D873B858B1" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:arubanetworks:aruba_2930m_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F800D447-86D0-4435-9337-5B0D55E96F15", "versionEndExcluding": "wc.16.10.0012" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:arubanetworks:aruba_2930m:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "2561E158-FB61-4FFD-B680-DADF7BC2C6D1" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:arubanetworks:aruba_2930f_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "48B6242A-87BC-48AA-9546-BA1FFF6E507C", "versionEndExcluding": "wc.16.10.0012" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:arubanetworks:aruba_2930f:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "97C4FCD2-BB70-4848-B08A-223B5C3467BB" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:arubanetworks:aruba_2920_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "84310DE6-B19A-4091-BA29-6BDF6EAE3C31", "versionEndExcluding": "wb.16.10.0011" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:arubanetworks:aruba_2920:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "B1782D4A-AD68-4BD2-8453-EE22BCF2DC99" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:arubanetworks:aruba_2540_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "590322F9-884D-4598-B222-D04E13AE2350", "versionEndExcluding": "yc.16.10.0012" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:arubanetworks:aruba_2540:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "FDEDD15E-289E-4B15-8620-547EA19CAEE7" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:arubanetworks:aruba_2530ya:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "B8251986-B9F2-4345-A4D7-EB3737F12AE0" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:arubanetworks:aruba_2530ya_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C1B21AAC-2F95-4EE9-9DFD-2864E0AD5172", "versionEndExcluding": "ya.16.10.0012" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:arubanetworks:aruba_3800_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "80404698-66D6-4649-AF49-B37EF53CC220", "versionEndExcluding": "ka.16.04.0022" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:arubanetworks:aruba_3800:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "50450263-8198-4A93-A317-86B8A0485328" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:arubanetworks:aruba_2620_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EA814B89-CF8A-464F-BD47-7B18CBEA7881", "versionEndExcluding": "ra.16.04.0022" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:arubanetworks:aruba_2620:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "7F10B7C2-A4A5-4EDC-B5CD-F645DF518125" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:hpe:8200_zl_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C07219AB-7F2C-4384-A029-F7DBC6330555", "versionEndExcluding": "k.15.18.0024" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:hpe:8200_zl:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "A726CBA0-CA79-4903-BD50-4455B7667C43" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:hpe:6200_yl_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A1FE2140-4A8C-4C46-A899-B023E330634F", "versionEndExcluding": "k.15.18.0024" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:hpe:6200_yl:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "147CA290-22E2-498E-B925-6D85F44823DE" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:hpe:3500_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "12442248-51A1-40CD-A25B-DF347341B8FC", "versionEndExcluding": "k.16.02.0032" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:hpe:3500:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "28168255-648C-4D4B-A765-1F0DE777E3F0" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:hpe:3500_yl_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "703F3FE8-21A7-4938-96B9-C4A838FCB6FE", "versionEndExcluding": "k.16.02.0032" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:hpe:3500_yl:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "91BBD047-E3C6-4AEA-B7B8-7BC4600E4E6A" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:arubanetworks:aruba_2530yb_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "201787FA-8CAC-457A-B7CC-76575A0DF0F3", "versionEndExcluding": "yb.16.10.0012" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:arubanetworks:aruba_2530yb:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "3D7A8F42-55C8-4A2B-8A34-1B1B8BE3BEDF" } ], "operator": "OR" } ], "operator": "AND" } ]