CVE-2007-3260: Critical severity HP System Management Homepage vulnerability
Published Jun 19, 2007
·Updated
HP System Management Homepage (SMH) before 2.1.9 for Linux, when used with Novell eDirectory, assigns the eDirectory members to the root group, which allows remote authenticated eDirectory users to gain privileges.
Affected Software
1 affected component
HP System Management Homepage<=2.1.8
Remediation
Patch Available
Event History
Jun 19, 2007
CVE Published
06:30 PM
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-3260?
CVE-2007-3260 is classified as a high severity vulnerability due to the potential for privilege escalation.
2
How do I fix CVE-2007-3260?
To fix CVE-2007-3260, upgrade HP System Management Homepage to version 2.1.9 or later.
3
Who is affected by CVE-2007-3260?
CVE-2007-3260 affects versions of HP System Management Homepage prior to 2.1.9 when used with Novell eDirectory.
4
What type of vulnerability is CVE-2007-3260?
CVE-2007-3260 is a privilege escalation vulnerability.
5
Can remote users exploit CVE-2007-3260?
Yes, remote authenticated eDirectory users can exploit CVE-2007-3260 to gain unauthorized privileges.