CVE-2010-3989

HP Insight Control Virtual Machine Management < 6.2 - Cross-Site Request Forgery

Title source: llm
STIX 2.1

Description

Cross-site request forgery (CSRF) vulnerability in HP Insight Control Virtual Machine Management before 6.2 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/44435
Vendor Advisory vendor-advisory x_refsource_hp
http://marc.info/?l=bugtraq&m=128811259326540&w=2
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1024641

Scores

EPSS 0.0009
EPSS Percentile 24.8%

Details

CWE
CWE-352
Status published
Products (5)
hp/insight_control_virtual_machine_management 6.0
hp/insight_control_virtual_machine_management 6.0.1
hp/insight_control_virtual_machine_management 6.0.2
hp/insight_control_virtual_machine_management 6.1
hp/insight_control_virtual_machine_management < 6.1.2
Published Oct 28, 2010
Tracked Since Feb 18, 2026