PT-2020-17684 · Hewlett Packard · Hpav2
Published
2020-07-31
·
Updated
2020-08-10
·
CVE-2020-3681
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
HPAV2 system (affected versions not specified)
Description
The issue allows authenticated and encrypted payload MMEs to be forged and remotely sent to any HPAV2 system. This can be achieved by using a jailbreak key that can be recovered from the code.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Use of a Broken Cryptographic Algorithm
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Hpav2