HP System Management Homepage (SMH) Multiple Vulnerabilities
22 Nov. 2010
Summary
Potential security vulnerabilities including Cross Site Scripting (XSS) and HTTP Response Splitting have been identified with HP System Management Homepage (SMH) for Linux and Windows.
Vulnerable Systems:
* HP System Management Homepage for Linux (x86) prior to v6.2
* HP System Management Homepage for Linux (AMD64/EM64T) prior to v6.2
* HP System Management Homepage for Windows prior to v6.2
Immune Systems:
* HP System Management Homepage for Linux (x86) v6.2
* HP System Management Homepage for Linux (AMD64/EM64T) v6.2
* HP System Management Homepage for Windows v6.2
The vulnerabilities could be exploited remotely resulting in cross site scripting (XSS), HTTP response splitting, Denial of Service (DoS), information disclosure, and data modification.