CVE-2012-0133

UnknownEPSS 1.17%

Last modified

CVE-2012-0133 is a vulnerability of currently unknown severity. HP ProCurve 5400 zl switches with certain serial numbers include a compact flash card that contains an unspecified virus, which might allow user-assisted remote attackers to execute arbitrary code on a PC by leveraging manual transfer of this card.. EPSS estimates a 1.17% chance of exploitation in the next 30 days.

Description

HP ProCurve 5400 zl switches with certain serial numbers include a compact flash card that contains an unspecified virus, which might allow user-assisted remote attackers to execute arbitrary code on a PC by leveraging manual transfer of this card.

Metrics

EPSS Probability
1.17%

63.3th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

VendorProductVersions
HpProcurve Switch 5400zlAll versions
HpProcurve Switch 5400zl Management Moduleid116as0hr
HpProcurve Switch 5400zl Management Moduleid116as04p
HpProcurve Switch 5400zl Management Moduleid117as00h
HpProcurve Switch 5400zl Management Moduleid126as0fb
HpProcurve Switch 5406-44g-Poe\+-4sfpzlAll versions
HpProcurve Switch 5406-48gzlAll versions
HpProcurve Switch 5406zl-44g-Poe\+\/2xg Sfp\+ V2All versions
HpProcurve Switch 5406zl-44g-Poe\+\/4g Sfp\+ V2All versions
HpProcurve Switch 5412-92g-Poe\+-4sfpzlAll versions
HpProcurve Switch 5412-96gzlAll versions
HpProcurve Switch 5412zl-92g-Poe\+\/4g Sfp\+ V2All versions
HpProcurve Switch 5412zl-92gg-Poe\+\/2xg Sfp\+ V2All versions
HpProcurve Switch Chassis E5406zlAll versions
HpProcurve Switch Chassis E5412zlAll versions
HpProcurve Switch E5406zlAll versions
HpProcurve Switch E5412zlAll versions

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2012-0133?
HP ProCurve 5400 zl switches with certain serial numbers include a compact flash card that contains an unspecified virus, which might allow user-assisted remote attackers to execute arbitrary code on a PC by leveraging manual transfer of this card.
How severe is CVE-2012-0133?
Severity scoring for CVE-2012-0133 is pending analysis. The EPSS model estimates a 1.17% probability of exploitation in the next 30 days.
How do I fix CVE-2012-0133?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2012-0133?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST