CVE-2010-1037

Description

Cross-site request forgery (CSRF) vulnerability in HP System Insight Manager before 6.0 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

Risk Information

Base Score
8.8
MODERATE
Vector
AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.128

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities affected in systems_insight_manager 4.1-sp1NCM
Multiple Vulnerabilities affected in systems_insight_manager 4.0-sp1NCM
Multiple Vulnerabilities affected in systems_insight_manager 5.0-sp3NCM
Multiple Vulnerabilities affected in systems_insight_manager 5.0-sp2NCM
Multiple Vulnerabilities affected in systems_insight_manager 5.0-sp1NCM
Multiple Vulnerabilities affected in systems_insight_manager 5.0NCM
Multiple Vulnerabilities affected in systems_insight_manager 4.2-sp2NCM
Multiple Vulnerabilities affected in systems_insight_manager 4.2-sp1NCM
Multiple Vulnerabilities affected in systems_insight_manager 4.2NCM
Multiple Vulnerabilities affected in systems_insight_manager 5.0-sp5NCM
Multiple Vulnerabilities affected in systems_insight_manager 5.0-sp4NCM
Vulnerabilities CVE-2008-4412 ,CVE-2010-1036 ,CVE-2010-1037 ,CVE-2010-1038 are affected in systems_insight_manager -update_1NCM
Multiple Vulnerabilities affected in systems_insight_manager 5.2NCM
Multiple Vulnerabilities affected in systems_insight_manager 5.1NCM
Multiple Vulnerabilities affected in systems_insight_manager 4.1NCM
Multiple Vulnerabilities affected in systems_insight_manager 4.0NCM
Multiple Vulnerabilities affected in systems_insight_manager 2.5.2.0NCM
Multiple Vulnerabilities affected in systems_insight_manager 2.5NCM
Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2010-1037)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234