CVE-2014-5070: High severity microsemi s350i firmware vulnerability
Published Jan 11, 2018
·Updated
Symmetricom s350i 2.70.15 allows remote authenticated users to gain privileges via vectors related to pushing unauthenticated users to the login page.
Affected Software
2 affected components
Microsemi S350i Firmware=2.70.15
Microsemi S350i
Event History
Jan 11, 2018
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is CVE-2014-5070?
CVE-2014-5070 is a vulnerability that allows remote authenticated users to gain privileges by pushing unauthenticated users to the login page in Symmetricom s350i 2.70.15.
2
How severe is CVE-2014-5070?
The severity of CVE-2014-5070 is high with a CVSS score of 8.8.
3
What software versions are affected by CVE-2014-5070?
Symmetricom s350i 2.70.15 is affected by CVE-2014-5070.
4
How can an attacker exploit CVE-2014-5070?
An attacker can exploit CVE-2014-5070 by using vectors related to pushing unauthenticated users to the login page.
5
Is Microsemi S350i vulnerable to CVE-2014-5070?
No, Microsemi S350i is not vulnerable to CVE-2014-5070.