CVE-2011-3846
HP System Management Homepage 6.2.2.7 - Cross-Site Request Forgery
Title source: llmDescription
Cross-site request forgery (CSRF) vulnerability in HP System Management Homepage (SMH) 6.2.2.7 allows remote attackers to hijack the authentication of administrators for requests that create administrative accounts.
References (1)
Core 1
Core References
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/43012
Scores
EPSS
0.0012
EPSS Percentile
30.3%
Details
CWE
CWE-352
Status
published
Products (1)
hp/system_management_homepage
6.2.2.7
Published
Apr 12, 2012
Tracked Since
Feb 18, 2026