CVE-2019-12001

MEDIUM

HPE MSA 1040/1050/2040/2042/2050/2052 < GL225P001 - Remote Session Reuse and Access Bypass

Title source: manual
STIX 2.1

Description

A remote session reuse vulnerability leading to access restriction bypass was discovered in HPE MSA 2040 SAN Storage; HPE MSA 1040 SAN Storage; HPE MSA 1050 SAN Storage; HPE MSA 2042 SAN Storage; HPE MSA 2050 SAN Storage; HPE MSA 2052 SAN Storage version(s): GL225P001 and earlier; GL225P001 and earlier; VE270R001-01 and earlier; GL225P001 and earlier; VL270R001-01 and earlier; VL270R001-01 and earlier.

References (1)

Core 1

Scores

CVSS v3 6.4
EPSS 0.0011
EPSS Percentile 28.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-613
Status published
Products (6)
hpe/msa_1040_firmware < gl225p001
hpe/msa_1050_firmware < ve270r001-01
hpe/msa_2040_firmware < gl225p001
hpe/msa_2042_firmware < gl225p001
hpe/msa_2050_firmware < vl270r001-01
hpe/msa_2052_firmware < vl270r001-01
Published Apr 17, 2020
Tracked Since Feb 18, 2026