HP SNMP Agents and Insight Management Agents Multiple Unspecified Security Vulnerabilities
BID:47510
Info
HP SNMP Agents and Insight Management Agents Multiple Unspecified Security Vulnerabilities
| Bugtraq ID: | 47510 |
| Class: | Unknown |
| CVE: |
CVE-2011-1537 CVE-2011-1538 CVE-2011-1539 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 19 2011 12:00AM |
| Updated: | May 23 2011 08:01PM |
| Credit: | HP and ProCheckUp Ltd. |
| Vulnerable: |
HP Proliant Support Pack 8.6 HP Insight Management Agents 8.6 HP Insight Management Agents 8.5 HP Insight Management Agents 7.70.0.0 |
| Not Vulnerable: |
HP SNMP Agents 8.7.0 HP Proliant Support Pack 8.7 HP Insight Management Agents 8.70.0 |
Discussion
HP SNMP Agents and Insight Management Agents Multiple Unspecified Security Vulnerabilities
HP SNMP Agents and Insight Management Agents are prone to multiple security vulnerabilities, including a cross-site scripting vulnerability, an information-disclosure vulnerability, and a URI-redirection vulnerability.
An attacker may leverage these issues to access sensitive information, redirect an unsuspecting victim to an attacker-controlled site, or execute arbitrary script code in the browser of an unsuspecting user in the context of the affected application. These may allow the attacker to steal cookie-based authentication credentials and may aid in phishing attacks.
Versions prior to HP ProLiant Support Pack 8.7 running on Linux and Windows are vulnerable.
NOTE (May 12, 2011): This BID was originally titled 'HP ProLiant Support Pack Multiple Unspecified Security Vulnerabilities', but has been renamed. The vendor indicates that the vulnerable components within ProLiant Support Pack are SNMP Agents prior to 8.7.0 and Insight Management Agents prior to 8.70.0. Both components are fixed within ProLiant Support Pack 8.7 or in individually available patches.
HP SNMP Agents and Insight Management Agents are prone to multiple security vulnerabilities, including a cross-site scripting vulnerability, an information-disclosure vulnerability, and a URI-redirection vulnerability.
An attacker may leverage these issues to access sensitive information, redirect an unsuspecting victim to an attacker-controlled site, or execute arbitrary script code in the browser of an unsuspecting user in the context of the affected application. These may allow the attacker to steal cookie-based authentication credentials and may aid in phishing attacks.
Versions prior to HP ProLiant Support Pack 8.7 running on Linux and Windows are vulnerable.
NOTE (May 12, 2011): This BID was originally titled 'HP ProLiant Support Pack Multiple Unspecified Security Vulnerabilities', but has been renamed. The vendor indicates that the vulnerable components within ProLiant Support Pack are SNMP Agents prior to 8.7.0 and Insight Management Agents prior to 8.70.0. Both components are fixed within ProLiant Support Pack 8.7 or in individually available patches.
Exploit / POC
HP SNMP Agents and Insight Management Agents Multiple Unspecified Security Vulnerabilities
Attackers can exploit these issues using a browser or readily available tools. To exploit a cross-site scripting or URI-redirection issue, the attacker must entice an unsuspecting victim to follow a malicious URI.
Attackers can exploit these issues using a browser or readily available tools. To exploit a cross-site scripting or URI-redirection issue, the attacker must entice an unsuspecting victim to follow a malicious URI.
Solution / Fix
HP SNMP Agents and Insight Management Agents Multiple Unspecified Security Vulnerabilities
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
HP SNMP Agents and Insight Management Agents Multiple Unspecified Security Vulnerabilities
References:
References: