CVE-2022-28624
Last modified
CVE-2022-28624 is a medium-severity vulnerability rated 4.8/10 on the CVSS scale. A potential security vulnerability has been identified in certain HPE FlexNetwork and FlexFabric switch products. The vulnerability could be remotely exploited to allow cross site scripting (XSS). EPSS estimates a 0.37% chance of exploitation in the next 30 days.
Description
A potential security vulnerability has been identified in certain HPE FlexNetwork and FlexFabric switch products. The vulnerability could be remotely exploited to allow cross site scripting (XSS). HPE has made the following software updates to resolve the vulnerability. HPE FlexNetwork 5130EL_7.10.R3507P02 and HPE FlexFabric 5945_7.10.R6635.
Metrics
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Hpe | Flexnetwork 5130 Ei Firmware | 7.10.r3507p02 |
| Hpe | Flexfabric 5945 Firmware | 7.10.r6635 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2022-28624?
How severe is CVE-2022-28624?
How do I fix CVE-2022-28624?
Are you affected by CVE-2022-28624?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
