Lucene search

K
cveMitreCVE-2009-1418
HistoryMay 19, 2009 - 7:30 p.m.

CVE-2009-1418

2009-05-1919:30:00
CWE-79
mitre
web.nvd.nist.gov
35
cve-2009-1418
cross-site scripting
xss
hp system management homepage
smh
remote attackers
web script
html
vulnerability
nvd

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.7

Confidence

High

EPSS

0.002

Percentile

56.8%

Cross-site scripting (XSS) vulnerability in HP System Management Homepage (SMH) before 3.0.1.73 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Affected configurations

Nvd
Node
hpsystem_management_homepageRange3.0.0-68
OR
hpsystem_management_homepageMatch2.0.0
OR
hpsystem_management_homepageMatch2.0.1
OR
hpsystem_management_homepageMatch2.0.1.104
OR
hpsystem_management_homepageMatch2.0.2
OR
hpsystem_management_homepageMatch2.0.2.106
OR
hpsystem_management_homepageMatch2.1
OR
hpsystem_management_homepageMatch2.1.0-103
OR
hpsystem_management_homepageMatch2.1.0-103\(a\)
OR
hpsystem_management_homepageMatch2.1.0-109
OR
hpsystem_management_homepageMatch2.1.0-118
OR
hpsystem_management_homepageMatch2.1.0.121
OR
hpsystem_management_homepageMatch2.1.1
OR
hpsystem_management_homepageMatch2.1.2
OR
hpsystem_management_homepageMatch2.1.2-127
OR
hpsystem_management_homepageMatch2.1.2.127
OR
hpsystem_management_homepageMatch2.1.3
OR
hpsystem_management_homepageMatch2.1.3.132
OR
hpsystem_management_homepageMatch2.1.4
OR
hpsystem_management_homepageMatch2.1.4-143
OR
hpsystem_management_homepageMatch2.1.4.143
OR
hpsystem_management_homepageMatch2.1.5
OR
hpsystem_management_homepageMatch2.1.5-146
OR
hpsystem_management_homepageMatch2.1.5.146
OR
hpsystem_management_homepageMatch2.1.5.146b
OR
hpsystem_management_homepageMatch2.1.6
OR
hpsystem_management_homepageMatch2.1.6-156
OR
hpsystem_management_homepageMatch2.1.6.156
OR
hpsystem_management_homepageMatch2.1.7
OR
hpsystem_management_homepageMatch2.1.7-168
OR
hpsystem_management_homepageMatch2.1.7.168
OR
hpsystem_management_homepageMatch2.1.8
OR
hpsystem_management_homepageMatch2.1.8-177
OR
hpsystem_management_homepageMatch2.1.8.179
OR
hpsystem_management_homepageMatch2.1.9
OR
hpsystem_management_homepageMatch2.1.9-178
OR
hpsystem_management_homepageMatch2.1.10
OR
hpsystem_management_homepageMatch2.1.10-186
OR
hpsystem_management_homepageMatch2.1.10.186
OR
hpsystem_management_homepageMatch2.1.10.186b
OR
hpsystem_management_homepageMatch2.1.10.186c
OR
hpsystem_management_homepageMatch2.1.11
OR
hpsystem_management_homepageMatch2.1.11-197
OR
hpsystem_management_homepageMatch2.1.11.197a
OR
hpsystem_management_homepageMatch2.1.12-118
OR
hpsystem_management_homepageMatch2.1.12-200
OR
hpsystem_management_homepageMatch2.1.12.201
OR
hpsystem_management_homepageMatch2.1.14.20
OR
hpsystem_management_homepageMatch2.1.15-210
OR
hpsystem_management_homepageMatch2.1.15.210
OR
hpsystem_management_homepageMatch2.2.6
OR
hpsystem_management_homepageMatch2.2.8
OR
hpsystem_management_homepageMatch3.0.0.64
VendorProductVersionCPE
hpsystem_management_homepage*cpe:2.3:a:hp:system_management_homepage:*:*:*:*:*:*:*:*
hpsystem_management_homepage2.0.0cpe:2.3:a:hp:system_management_homepage:2.0.0:*:*:*:*:*:*:*
hpsystem_management_homepage2.0.1cpe:2.3:a:hp:system_management_homepage:2.0.1:*:*:*:*:*:*:*
hpsystem_management_homepage2.0.1.104cpe:2.3:a:hp:system_management_homepage:2.0.1.104:*:*:*:*:*:*:*
hpsystem_management_homepage2.0.2cpe:2.3:a:hp:system_management_homepage:2.0.2:*:*:*:*:*:*:*
hpsystem_management_homepage2.0.2.106cpe:2.3:a:hp:system_management_homepage:2.0.2.106:*:*:*:*:*:*:*
hpsystem_management_homepage2.1cpe:2.3:a:hp:system_management_homepage:2.1:*:*:*:*:*:*:*
hpsystem_management_homepage2.1.0-103cpe:2.3:a:hp:system_management_homepage:2.1.0-103:*:*:*:*:*:*:*
hpsystem_management_homepage2.1.0-103(a)cpe:2.3:a:hp:system_management_homepage:2.1.0-103\(a\):*:*:*:*:*:*:*
hpsystem_management_homepage2.1.0-109cpe:2.3:a:hp:system_management_homepage:2.1.0-109:*:*:*:*:*:*:*
Rows per page:
1-10 of 531

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.7

Confidence

High

EPSS

0.002

Percentile

56.8%