CVE-2011-3846: CSRF
Published Apr 12, 2012
·Updated
Cross-site request forgery (CSRF) vulnerability in HP System Management Homepage (SMH) 6.2.2.7 allows remote attackers to hijack the authentication of administrators for requests that create administrative accounts.
Affected Software
1 affected component
HP System Management Homepage=6.2.2.7
Event History
Apr 12, 2012
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-3846?
CVE-2011-3846 is classified as a medium severity vulnerability due to its potential impact on administrative account security.
2
How do I fix CVE-2011-3846?
To fix CVE-2011-3846, it is recommended to update HP System Management Homepage to a version that addresses this vulnerability.
3
What systems are affected by CVE-2011-3846?
CVE-2011-3846 specifically affects HP System Management Homepage version 6.2.2.7.
4
What type of vulnerability is CVE-2011-3846?
CVE-2011-3846 is a Cross-site request forgery (CSRF) vulnerability.
5
Can CVE-2011-3846 lead to unauthorized account creation?
Yes, CVE-2011-3846 can allow remote attackers to hijack authentications and create unauthorized administrative accounts.