First published: Fri Aug 06 2010(Updated: )
Unspecified vulnerability on the HP ProCurve 1800-24G switch with software PB.03.02 and earlier, and the ProCurve 1800-8G switch with software PA.03.02 and earlier, when SNMP is enabled, allows remote attackers to obtain sensitive information via unknown vectors.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hp Procurve Switch Software | <=pb.03.02 | |
Hp Procurve Switch Software | =pb.02.01 | |
Hp Procurve Switch Software | =pb.02.02 | |
Hp Procurve Switch Software | =pb.02.03 | |
Hp Procurve Switch Software | =pb.02.04 | |
Hp Procurve Switch Software | =pb.02.05 | |
Hp Procurve Switch Software | =pb.02.06 | |
Hp Procurve Switch Software | =pb.02.07 | |
Hp Procurve Switch Software | =pb.02.08 | |
Hp Procurve Switch Software | =pb.02.09 | |
Hp Procurve Switch Software | =pb.03.00 | |
Hp Procurve Switch Software | =pb.03.01 | |
Hp Procurve Switch 1800-24g | ||
Hp Procurve Switch Software | <=pa.03.02 | |
Hp Procurve Switch Software | =pa.02.01 | |
Hp Procurve Switch Software | =pa.02.02 | |
Hp Procurve Switch Software | =pa.02.03 | |
Hp Procurve Switch Software | =pa.02.04 | |
Hp Procurve Switch Software | =pa.02.05 | |
Hp Procurve Switch Software | =pa.02.06 | |
Hp Procurve Switch Software | =pa.02.07 | |
Hp Procurve Switch Software | =pa.02.08 | |
Hp Procurve Switch Software | =pa.02.09 | |
Hp Procurve Switch Software | =pa.03.00 | |
Hp Procurve Switch Software | =pa.03.01 | |
Hp Procurve Switch 1800-8g |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-2705 has been classified as a moderate severity vulnerability.
To fix CVE-2010-2705, upgrade your HP ProCurve switch to a version later than PB.03.02 for the 1800-24G switch or PA.03.02 for the 1800-8G switch.
CVE-2010-2705 affects the HP ProCurve 1800-24G and 1800-8G switches with specific software versions.
Attackers can exploit CVE-2010-2705 to obtain sensitive information when SNMP is enabled on the affected devices.
CVE-2010-2705 was disclosed in July 2010.