CVE-2011-3846

HP System Management Homepage 6.2.2.7 - Cross-Site Request Forgery

Title source: llm
STIX 2.1

Description

Cross-site request forgery (CSRF) vulnerability in HP System Management Homepage (SMH) 6.2.2.7 allows remote attackers to hijack the authentication of administrators for requests that create administrative accounts.

References (1)

Core 1
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/43012

Scores

EPSS 0.0012
EPSS Percentile 30.3%

Details

CWE
CWE-352
Status published
Products (1)
hp/system_management_homepage 6.2.2.7
Published Apr 12, 2012
Tracked Since Feb 18, 2026