Security Advisory

CVE-2019-5314

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-09-13 16:49:38
Last updated 2024-08-04 19:54:53
Assigner hpe
State PUBLISHED

Description

Some web components in the ArubaOS software are vulnerable to HTTP Response splitting (CRLF injection) and Reflected XSS. An attacker would be able to accomplish this by sending certain URL parameters that would trigger this vulnerability.