CVE Database
/

CVE-2022-37940

Back to search

CVE-2022-37940

Published: Mar 15, 2023

Modified: Feb 27, 2025

PUBLISHED

CVSS v3.1

5.3

MEDIUM

Description

Potential security vulnerabilities have been identified in the HPE FlexFabric 5700 Switch Series. These vulnerabilities could be remotely exploited to allow host header injection and URL redirection. HPE has made the following software to resolve the vulnerability in HPE FlexFabric 5700 Switch Series version R2432P61 or later.

VendorProductVersions

Hewlett Packard Enterprise (HPE)

HPE FlexFabric 5700 Switch Series

affected
Prior to R2432P61

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

Attack Vector

Network

Attack Complexity

Low

Privileges Required

None

User Interaction

None

Scope

Unchanged

Confidentiality

None

Integrity

None

Availability

Low

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now