PT-2022-24164 · Hewlett Packard · Hpe Officeconnect 1820+2

Published

2022-11-21

·

Updated

2023-08-08

·

CVE-2022-37932

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Hewlett Packard Enterprise OfficeConnect 1820 versions prior to PT.02.14 Hewlett Packard Enterprise OfficeConnect 1850 versions prior to PC.01.22 Hewlett Packard Enterprise OfficeConnect 1920S versions prior to PO.01.21 Hewlett Packard Enterprise OfficeConnect 1920S versions prior to PD.02.22
Description A potential security issue has been identified in Hewlett Packard Enterprise OfficeConnect Network switches, which could be remotely exploited to allow authentication bypass.
Recommendations For Hewlett Packard Enterprise OfficeConnect 1820 versions prior to PT.02.14, update to version PT.02.14 or later to resolve the issue. For Hewlett Packard Enterprise OfficeConnect 1850 versions prior to PC.01.22, update to version PC.01.22 or later to resolve the issue. For Hewlett Packard Enterprise OfficeConnect 1920S versions prior to PO.01.21, update to version PO.01.21 or later to resolve the issue. For Hewlett Packard Enterprise OfficeConnect 1920S versions prior to PD.02.22, update to version PD.02.22 or later to resolve the issue.

Fix

Related Identifiers

CVE-2022-37932
ZDI-22-1623

Affected Products

Hpe Officeconnect 1820
Hpe Officeconnect 1850
Officeconnect 1920S