A vulnerability exists in the Aruba Analytics and Location Engine (ALE) web management interface 2.1.0.2 and earlier firmware that allows an already authenticated administrative user to arbitrarily modify files as an underlying privileged operating system user.
References
Link | Resource |
---|---|
https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2020-008.txt | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: hpe
Published: 2020-09-04T12:01:08
Updated: 2020-09-09T14:31:03
Reserved: 2020-01-16T00:00:00
Link: CVE-2020-7119
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-09-04T12:15:10.543
Modified: 2020-09-09T17:53:47.407
Link: CVE-2020-7119
JSON object: View
Redhat Information
No data.
CWE