CVE-2013-3576: OS Command Injection
Published Jun 14, 2013
·Updated
ginkgosnmp.inc in HP System Management Homepage (SMH) allows remote authenticated users to execute arbitrary commands via shell metacharacters in the PATHINFO to smhutil/snmpchp.php.en.
Affected Software
1 affected component
HP System Management Homepage
Event History
Jun 14, 2013
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-3576?
CVE-2013-3576 is considered a high-severity vulnerability due to its potential for remote command execution.
2
How do I fix CVE-2013-3576?
To fix CVE-2013-3576, update your HP System Management Homepage to the latest version available from HP.
3
What types of users are affected by CVE-2013-3576?
CVE-2013-3576 affects remote authenticated users who can exploit the vulnerability to execute arbitrary commands.
4
Which software versions are vulnerable to CVE-2013-3576?
CVE-2013-3576 affects all versions of HP System Management Homepage prior to the patches provided by HP.
5
What potential impacts does CVE-2013-3576 have on a system?
The impact of CVE-2013-3576 includes unauthorized access and control over the affected system, leading to possible data breaches.