A remotely exploitable information disclosure vulnerability is present in Aruba Intelligent Edge Switch models 5400, 3810, 2920, 2930, 2530 with GigT port, 2530 10/100 port, or 2540. The vulnerability impacts firmware 16.08.* before 16.08.0009, 16.09.* before 16.09.0007 and 16.10.* before 16.10.0003. The vulnerability allows an attacker to retrieve sensitive system information. This attack can be carried out without user authentication under very specific conditions.
AI analysis not yet available
Plain-English explanation, risk summary, and remediation steps will appear here once AI analysis is complete.
No Fix Known
No patch has been released yet. Apply workarounds or mitigations where available.
| Vendor | Product | Versions | Fixed In |
|---|---|---|---|
| arubanetworks | 5400r_firmware | 16.08.0 - 16.08.0009 | - |
| arubanetworks | 5400r_firmware | 16.09.0 - 16.09.0007 | - |
| arubanetworks | 5400r_firmware |
Published
CVE disclosed publicly
Last Modified
Most recent update
Indexed to CVEInsight
Added to this platform
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
21
Affected Products
2
References
arubanetworks / 5400r_firmware
| 16.10.0 - 16.10.0003 |
| - |
| arubanetworks | 3810_firmware | 16.08.0 - 16.08.0009 | - |
| arubanetworks | 3810_firmware | 16.09.0 - 16.09.0007 | - |
| arubanetworks | 3810_firmware | 16.10.0 - 16.10.0003 | - |
| arubanetworks | 2920_firmware | 16.08.0 - 16.08.0009 | - |
| arubanetworks | 2920_firmware | 16.09.0 - 16.09.0007 | - |
| arubanetworks | 2920_firmware | 16.10.0 - 16.10.0003 | - |
| arubanetworks | 2930_firmware | 16.08.0 - 16.08.0009 | - |
| arubanetworks | 2930_firmware | 16.09.0 - 16.09.0007 | - |
| arubanetworks | 2930_firmware | 16.10.0 - 16.10.0003 | - |
| arubanetworks | 2530_with_gigt_port_firmware | 16.08.0 - 16.08.0009 | - |
| arubanetworks | 2530_with_gigt_port_firmware | 16.09.0 - 16.09.0007 | - |
| arubanetworks | 2530_with_gigt_port_firmware | 16.10.0 - 16.10.0003 | - |
| arubanetworks | 2530_10\/100_port_firmware | 16.08.0 - 16.08.0009 | - |
| arubanetworks | 2530_10\/100_port_firmware | 16.09.0 - 16.09.0007 | - |
| arubanetworks | 2530_10\/100_port_firmware | 16.10.0 - 16.10.0003 | - |
| arubanetworks | 2540_firmware | 16.08.0 - 16.08.0009 | - |
| arubanetworks | 2540_firmware | 16.09.0 - 16.09.0007 | - |
| arubanetworks | 2540_firmware | 16.10.0 - 16.10.0003 | - |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability
Impact