ID

VAR-202001-1980


TITLE

H3C S5120V2-SI Series Switch Has Denial of Service Vulnerability

Trust: 0.6

sources: CNVD: CNVD-2020-00783

DESCRIPTION

H3C S5120V2-SI switch is a Layer 2 Gigabit Ethernet switch product independently developed by Xinhua III Technology Co., Ltd. (hereinafter referred to as H3C company). It is the second design for network environments that require high performance, high port density and easy installation. Generation of intelligent network manageable switches. In an enterprise network, it can provide Gigabit to desktop applications as an access device; in a metropolitan area network or industry users, it can provide Gigabit access to end users or tandem low-end switches, and up through Gigabit Gigabit Fiber or link aggregation is aggregated to a large-capacity L3 switch. The H3C S5120V2-52P-SI switch has a denial of service vulnerability. An attacker can use this vulnerability to construct a special data message to bypass the access control list (ACL), which causes the TELNET service to refuse to respond and the switch to leave the management.

Trust: 0.6

sources: CNVD: CNVD-2020-00783

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2020-00783

AFFECTED PRODUCTS

vendor:h3cmodel:s5120v2-si series switchesscope: - version: -

Trust: 0.6

sources: CNVD: CNVD-2020-00783

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2020-00783
value: HIGH

Trust: 0.6

CNVD: CNVD-2020-00783
severity: HIGH
baseScore: 7.8
vectorString: AV:N/AC:L/AU:N/C:N/I:N/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 6.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2020-00783

PATCH

title:H3C S5120V2-SI Series Switch Has Denial of Service Vulnerabilityurl:https://www.cnvd.org.cn/patchinfo/show/192823

Trust: 0.6

sources: CNVD: CNVD-2020-00783

EXTERNAL IDS

db:CNVDid:CNVD-2020-00783

Trust: 0.6

sources: CNVD: CNVD-2020-00783

SOURCES

db:CNVDid:CNVD-2020-00783

LAST UPDATE DATE

2022-05-04T09:16:06.894000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2020-00783date:2020-01-09T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2020-00783date:2020-01-12T00:00:00