CVSS: 7.4EPSS: 0%CPEs: 32EXPL: 0CVE-2012-0128 – HP Security Bulletin HPSBMU02759 SSRT100817
https://notcve.org/view.php?id=CVE-2012-0128
04 Apr 2012 — HP Onboard Administrator (OA) before 3.50 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors. HP Onboard Administrator (OA) antes de v3.50 permite a atacantes remotos redirigir a los usuarios a sitios web de su elección y llevar a cabo ataques de phishing a través de vectores no especificados. Potential security vulnerabilities have been identified with HP Onboard Administrator (OA). The vulnerabilities could be exploited remotely resulting ... • http://www.securityfocus.com/archive/1/522176 • CWE-20: Improper Input Validation •
CVSS: 9.8EPSS: 6%CPEs: 32EXPL: 0CVE-2012-0129 – HP Security Bulletin HPSBMU02759 SSRT100817
https://notcve.org/view.php?id=CVE-2012-0129
04 Apr 2012 — HP Onboard Administrator (OA) before 3.50 allows remote attackers to bypass intended access restrictions and execute arbitrary code via unspecified vectors. HP Onboard Administrator (OA) antes de v3.50 permite a atacantes remotos eludir restricciones de acceso y ejecutar código de su elección a través de vectores no especificados. Potential security vulnerabilities have been identified with HP Onboard Administrator (OA). The vulnerabilities could be exploited remotely resulting in unauthorized access, unaut... • http://www.securityfocus.com/archive/1/522176 • CWE-264: Permissions, Privileges, and Access Controls •
CVSS: 7.5EPSS: 1%CPEs: 32EXPL: 0CVE-2012-0130 – HP Security Bulletin HPSBMU02759 SSRT100817
https://notcve.org/view.php?id=CVE-2012-0130
04 Apr 2012 — HP Onboard Administrator (OA) before 3.50 allows remote attackers to obtain sensitive information via unspecified vectors. HP Onboard Administrator (OA) antes de v3.50 permite a atacantes remotos obtener información sensible a través de vectores no especificados. Potential security vulnerabilities have been identified with HP Onboard Administrator (OA). The vulnerabilities could be exploited remotely resulting in unauthorized access, unauthorized information disclosure, Denial of Service (DoS), and URL redi... • http://www.securityfocus.com/archive/1/522176 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
