CVE-2009-4185
 
Severity Score
4.3
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
1
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Cross-site scripting (XSS) vulnerability in proxy/smhui/getuiinfo in HP System Management Homepage (SMH) before 6.0 allows remote attackers to inject arbitrary web script or HTML via the servercert parameter.
Vulnerabilidad de ejecución de comandos en sitios cruzados(XSS)en proxy/smhui/getuiinfo en HP System Management Homepage (SMH) anterior v6.0 permite a atacantes remotos inyectar código web o HTML de su elección a través del parámetro servercert.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2009-12-03 CVE Reserved
- 2010-02-05 CVE Published
- 2023-03-07 EPSS Updated
- 2024-08-07 CVE Updated
- 2024-08-07 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
References (7)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/archive/1/509195/100/0/threaded | Mailing List | |
http://www.securityfocus.com/bid/38081 | Vdb Entry | |
http://www.securitytracker.com/id?1023541 | Vdb Entry |
URL | Date | SRC |
---|---|---|
http://www.procheckup.com/vulnerability_manager/vulnerabilities/pr09-15 | 2024-08-07 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://marc.info/?l=bugtraq&m=126529736830358&w=2 | 2018-10-10 | |
http://secunia.com/advisories/38341 | 2018-10-10 | |
http://www.vupen.com/english/advisories/2010/0294 | 2018-10-10 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | <= 3.0.2.77 Search vendor "Hp" for product "System Management Homepage" and version " <= 3.0.2.77" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.0.0 Search vendor "Hp" for product "System Management Homepage" and version "2.0.0" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.0.1 Search vendor "Hp" for product "System Management Homepage" and version "2.0.1" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.0.2 Search vendor "Hp" for product "System Management Homepage" and version "2.0.2" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1 Search vendor "Hp" for product "System Management Homepage" and version "2.1" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.0-103 Search vendor "Hp" for product "System Management Homepage" and version "2.1.0-103" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.0-103\(a\) Search vendor "Hp" for product "System Management Homepage" and version "2.1.0-103\(a\)" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.0-109 Search vendor "Hp" for product "System Management Homepage" and version "2.1.0-109" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.0-118 Search vendor "Hp" for product "System Management Homepage" and version "2.1.0-118" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.1 Search vendor "Hp" for product "System Management Homepage" and version "2.1.1" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.2 Search vendor "Hp" for product "System Management Homepage" and version "2.1.2" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.2-127 Search vendor "Hp" for product "System Management Homepage" and version "2.1.2-127" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.3 Search vendor "Hp" for product "System Management Homepage" and version "2.1.3" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.3.132 Search vendor "Hp" for product "System Management Homepage" and version "2.1.3.132" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.4 Search vendor "Hp" for product "System Management Homepage" and version "2.1.4" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.4-143 Search vendor "Hp" for product "System Management Homepage" and version "2.1.4-143" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.5 Search vendor "Hp" for product "System Management Homepage" and version "2.1.5" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.5-146 Search vendor "Hp" for product "System Management Homepage" and version "2.1.5-146" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.6 Search vendor "Hp" for product "System Management Homepage" and version "2.1.6" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.6-156 Search vendor "Hp" for product "System Management Homepage" and version "2.1.6-156" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.7 Search vendor "Hp" for product "System Management Homepage" and version "2.1.7" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.7-168 Search vendor "Hp" for product "System Management Homepage" and version "2.1.7-168" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.8 Search vendor "Hp" for product "System Management Homepage" and version "2.1.8" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.8-177 Search vendor "Hp" for product "System Management Homepage" and version "2.1.8-177" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.9 Search vendor "Hp" for product "System Management Homepage" and version "2.1.9" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.9-178 Search vendor "Hp" for product "System Management Homepage" and version "2.1.9-178" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.10 Search vendor "Hp" for product "System Management Homepage" and version "2.1.10" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.10-186 Search vendor "Hp" for product "System Management Homepage" and version "2.1.10-186" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.11 Search vendor "Hp" for product "System Management Homepage" and version "2.1.11" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.11-197 Search vendor "Hp" for product "System Management Homepage" and version "2.1.11-197" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.12-118 Search vendor "Hp" for product "System Management Homepage" and version "2.1.12-118" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.12-200 Search vendor "Hp" for product "System Management Homepage" and version "2.1.12-200" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.1.15-210 Search vendor "Hp" for product "System Management Homepage" and version "2.1.15-210" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.2.6 Search vendor "Hp" for product "System Management Homepage" and version "2.2.6" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 2.2.8 Search vendor "Hp" for product "System Management Homepage" and version "2.2.8" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 3.0.0-68 Search vendor "Hp" for product "System Management Homepage" and version "3.0.0-68" | - |
Affected
| ||||||
Hp Search vendor "Hp" | System Management Homepage Search vendor "Hp" for product "System Management Homepage" | 3.0.1.73 Search vendor "Hp" for product "System Management Homepage" and version "3.0.1.73" | - |
Affected
|