CVE-2010-1586

Open redirect vulnerability in red2301.html in HP System Management Homepage (SMH) 2.x.x.x allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via the RedirectUrl parameter.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:hp:system_management_homepage:2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.0.2:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.0-103:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.0-103\(a\):*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.0-109:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.0-118:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.1:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.2:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.2-127:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.3:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.3.132:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.4:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.5:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.5-146:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.6:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.6-156:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.7:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.7-168:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.8:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.8-177:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.9:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.9-178:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.10-186:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.11-197:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.12-118:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.1.12-200:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.2.6:*:*:*:*:*:*:*
cpe:2.3:a:hp:system_management_homepage:2.2.8:*:*:*:*:*:*:*

History

No history.

Information

Published : 2010-04-28 22:30

Updated : 2024-02-04 17:54


NVD link : CVE-2010-1586

Mitre link : CVE-2010-1586

CVE.ORG link : CVE-2010-1586


JSON object : View

Products Affected

hp

  • system_management_homepage
CWE
CWE-20

Improper Input Validation