First published: Wed May 02 2012(Updated: )
Open redirect vulnerability in HP Insight Management Agents before 9.0.0.0 on Windows Server 2003 and 2008 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP Insight Management Agents | <=8.70.0.0 | |
HP Insight Management Agents | =6.30.0.0 | |
HP Insight Management Agents | =6.31.0.0-b | |
HP Insight Management Agents | =6.40.0.0 | |
HP Insight Management Agents | =7.0.0.0 | |
HP Insight Management Agents | =7.10.0.0 | |
HP Insight Management Agents | =7.20.0.0 | |
HP Insight Management Agents | =7.30.0.0 | |
HP Insight Management Agents | =7.40.0.0 | |
HP Insight Management Agents | =7.40.1.0 | |
HP Insight Management Agents | =7.41.0.0 | |
HP Insight Management Agents | =7.50.0.0 | |
HP Insight Management Agents | =7.51.0.0 | |
HP Insight Management Agents | =7.60.0.0 | |
HP Insight Management Agents | =7.70.0.0 | |
HP Insight Management Agents | =7.80.0.0 | |
HP Insight Management Agents | =7.90.0.0 | |
HP Insight Management Agents | =7.91.0.0 | |
HP Insight Management Agents | =7.95.0.0 | |
HP Insight Management Agents | =8.0.0.0 | |
HP Insight Management Agents | =8.1.0.0 | |
HP Insight Management Agents | =8.5 | |
HP Insight Management Agents | =8.10.0.0 | |
HP Insight Management Agents | =8.11.0.0 | |
HP Insight Management Agents | =8.15.0.0 | |
HP Insight Management Agents | =8.20.0.0 | |
HP Insight Management Agents | =8.22.0.0 | |
HP Insight Management Agents | =8.26.0.0 | |
HP Insight Management Agents | =8.30.0.0 | |
HP Insight Management Agents | =8.40.0.0 | |
HP Insight Management Agents | =8.50.0.0 | |
HP Insight Management Agents | =8.60.0.0 | |
HP Insight Management Agents | =8.70.0.0 | |
Microsoft Windows 2003 Server | ||
Microsoft Windows Server 2003 | ||
Microsoft Windows Server 2008 Itanium | ||
Microsoft Windows Server 2008 Itanium |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-2004 has a medium severity level due to its potential to allow phishing attacks through open redirect mechanisms.
To fix CVE-2012-2004, upgrade to a patched version of HP Insight Management Agents that is beyond version 8.70.0.0.
CVE-2012-2004 affects HP Insight Management Agents versions prior to 9.0.0.0, specifically versions up to 8.70.0.0.
CVE-2012-2004 impacts HP Insight Management Agents running on Windows Server 2003 and Windows Server 2008.
CVE-2012-2004 can be exploited to conduct open redirect attacks, redirecting users to malicious websites.