Medium severity6.8NVD Advisory· Published Jan 5, 2023· Updated Jun 17, 2026
CVE-2022-37934
CVE-2022-37934
Description
A potential security vulnerability has been identified in HPE OfficeConnect 1820, and 1850 switch series. The vulnerability could be remotely exploited to allow remote directory traversal in HPE OfficeConnect 1820 switch series version PT.02.17 and below, HPE OfficeConnect 1850 switch series version PC.01.23 and below, and HPE OfficeConnect 1850 (10G aggregator) switch version PO.01.22 and below.
Affected products
14- cpe:2.3:o:hp:officeconnect_1820_24g_poe\+_\(185w\)_switch_j9983a_firmware:*:*:*:*:*:*:*:*Range: <pt.02.17
- cpe:2.3:o:hp:officeconnect_1820_48g_poe\+_\(370w\)_switch_j9984a_firmware:*:*:*:*:*:*:*:*Range: <pt.02.17
- cpe:2.3:o:hp:officeconnect_1820_8g_poe\+_\(65w\)_switch_j9982a_firmware:*:*:*:*:*:*:*:*Range: <pt.02.17
- cpe:2.3:o:hp:officeconnect_1820_8g_switch_j9979a_firmware:*:*:*:*:*:*:*:*Range: <pt.02.17
- cpe:2.3:o:hpe:officeconnect_1850_24g_2xgt_firmware:*:*:*:*:*:*:*:*Range: <pc.01.23
- cpe:2.3:o:hpe:officeconnect_1850_24g_2xgt_poe\+_firmware:*:*:*:*:*:*:*:*Range: <pc.01.23
- cpe:2.3:o:hpe:officeconnect_1850_2xgt\/spf\+_firmware:*:*:*:*:*:*:*:*Range: <po.01.22
- cpe:2.3:o:hpe:officeconnect_1850_48g_4xgt_firmware:*:*:*:*:*:*:*:*Range: <pc.01.23
- cpe:2.3:o:hpe:officeconnect_1850_48g_4xgt_poe\+_firmware:*:*:*:*:*:*:*:*Range: <pc.01.23
- cpe:2.3:o:hpe:officeconnect_1850_6xgt_firmware:*:*:*:*:*:*:*:*Range: <pc.01.23
- Range: <=PT.02.17
- Range: <=PC.01.23
- Range: <=PO.01.22
- Hewlett Packard Enterprise (HPE)/HPE OfficeConnect 1820 and 1850 Switch Seriesv5Range: Prior to PT.02.17; Prior to PC.01.23; Prior to PO.01.22
Patches
Vulnerability mechanics
References
1- support.hpe.com/hpsc/doc/public/displaynvdVendor Advisory
News mentions
0No linked articles in our index yet.