Lucene search

K
cve[email protected]CVE-2010-1037
HistoryOct 03, 2022 - 4:20 p.m.

CVE-2010-1037

2022-10-0316:20:59
CWE-352
web.nvd.nist.gov
21
cve-2010-1037
cross-site request forgery
csrf vulnerability
hp system insight manager
nvd

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

7.3 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

50.6%

Cross-site request forgery (CSRF) vulnerability in HP System Insight Manager before 6.0 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

Affected configurations

NVD
Node
hpsystems_insight_managersp1
OR
hpsystems_insight_managerRange5.2update_1
OR
hpsystems_insight_managerMatch2.5
OR
hpsystems_insight_managerMatch2.5.2.0
OR
hpsystems_insight_managerMatch4.0
OR
hpsystems_insight_managerMatch4.0sp1
OR
hpsystems_insight_managerMatch4.1
OR
hpsystems_insight_managerMatch4.1sp1
OR
hpsystems_insight_managerMatch4.2
OR
hpsystems_insight_managerMatch4.2sp1
OR
hpsystems_insight_managerMatch4.2sp2
OR
hpsystems_insight_managerMatch5.0
OR
hpsystems_insight_managerMatch5.0sp1
OR
hpsystems_insight_managerMatch5.0sp2
OR
hpsystems_insight_managerMatch5.0sp3
OR
hpsystems_insight_managerMatch5.0sp4
OR
hpsystems_insight_managerMatch5.0sp5
OR
hpsystems_insight_managerMatch5.1
OR
hpsystems_insight_managerMatch5.2

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

7.3 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

50.6%

Related for CVE-2010-1037