Description
Some web components in the ArubaOS software are vulnerable to HTTP Response splitting (CRLF injection) and Reflected XSS. An attacker would be able to accomplish this by sending certain URL parameters that would trigger this vulnerability.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-14918 | Some web components in the ArubaOS software are vulnerable to HTTP Response splitting (CRLF injection) and Reflected XSS. An attacker would be able to accomplish this by sending certain URL parameters that would trigger this vulnerability. |
References
History
No history.
Status: PUBLISHED
Assigner: hpe
Published:
Updated: 2024-08-04T19:54:53.049Z
Reserved: 2019-01-04T00:00:00.000Z
Link: CVE-2019-5314
No data.
Status : Modified
Published: 2019-09-13T17:15:12.130
Modified: 2024-11-21T04:44:43.987
Link: CVE-2019-5314
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD