First published: Fri Jun 14 2013(Updated: )
ginkgosnmp.inc in HP System Management Homepage (SMH) allows remote authenticated users to execute arbitrary commands via shell metacharacters in the PATH_INFO to smhutil/snmpchp.php.en.
Credit: cret@cert.org
Affected Software | Affected Version | How to fix |
---|---|---|
HP System Management Homepage |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-3576 is considered a high-severity vulnerability due to its potential for remote command execution.
To fix CVE-2013-3576, update your HP System Management Homepage to the latest version available from HP.
CVE-2013-3576 affects remote authenticated users who can exploit the vulnerability to execute arbitrary commands.
CVE-2013-3576 affects all versions of HP System Management Homepage prior to the patches provided by HP.
The impact of CVE-2013-3576 includes unauthorized access and control over the affected system, leading to possible data breaches.