CVE-2020-7119 Vulnerability Details

  /     /     /  

CVE-2020-7119 Metadata Quick Info

CVE Published: 04/09/2020 | CVE Updated: 04/08/2024 | CVE Year: 2020
Source: hpe | Vendor: n/a | Product: Aruba ALE ClearPass C1000 S-1200 R4 HW-Based Appliance
Status : PUBLISHED

CVE-2020-7119 Description

A vulnerability exists in the Aruba Analytics and Location Engine (ALE) web management interface 2.1.0.2 and earlier firmware that allows an already authenticated administrative user to arbitrarily modify files as an underlying privileged operating system user.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID:
CWE Name: Remote Arbitrary File Modification
Source: n/a

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).