In Aruba AirWave Glass before 1.3.3, there is a Server-Side Request Forgery vulnerability through an unauthenticated endpoint that if successfully exploited can result in disclosure of sensitive information. This can be used to perform an authentication bypass and ultimately gain administrative access on the web administrative interface.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-17357 | In Aruba AirWave Glass before 1.3.3, there is a Server-Side Request Forgery vulnerability through an unauthenticated endpoint that if successfully exploited can result in disclosure of sensitive information. This can be used to perform an authentication bypass and ultimately gain administrative access on the web administrative interface. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: hpe
Published:
Updated: 2024-08-04T15:19:08.639Z
Reserved: 2020-08-25T00:00:00
Link: CVE-2020-24641
No data.
Status : Modified
Published: 2021-01-15T19:15:13.703
Modified: 2024-11-21T05:15:19.760
Link: CVE-2020-24641
No data.
OpenCVE Enrichment
No data.
EUVD