SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2013-2341

Unspecified vulnerability on the HP ProCurve JC###A, JC###B, JD###A, JD###B, JE###A, JF###A, JF###B, JF###C, JG###A, 658250-B21, and 658247-B21; HP 3COM routers and switches; and HP H3C routers and switches allows remote authenticated users to execute…

HIGH 7.1EPSS 3.07%

Does this matter?

High impact if exploited, but EPSS currently rates exploitation as unlikely (3.07%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.

Description

Unspecified vulnerability on the HP ProCurve JC###A, JC###B, JD###A, JD###B, JE###A, JF###A, JF###B, JF###C, JG###A, 658250-B21, and 658247-B21; HP 3COM routers and switches; and HP H3C routers and switches allows remote authenticated users to execute arbitrary code or obtain sensitive information via unknown vectors.

CVSS 2.0
7.1 HIGHAV:N/AC:H/Au:S/C:C/I:C/A:C
EPSS
3.07% probability · 87th percentile
CISA KEV
Not listed
Affected
hp/3com baseline plus switch · hp/3com router · hp/3com switch · hp/3com switch taa compliant · hp/3com taa switch · hp/h3c ethernet switch · hp/h3c high performance main processing unit · hp/h3c processing module · hp/h3c processor module · hp/h3c router · hp/h3c routing switch · hp/h3c switch · hp/procurve router · hp/procurve switch · hp/vpn firewall appliance
Source
hp-security-alert@hp.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.