CVE-2013-6202

Severity
6.8MEDIUM
EPSS
0.4%
top 36.98%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 24
Latest updateMay 13

Description

Multiple cross-site request forgery (CSRF) vulnerabilities in HP Service Manager 9.30, 9.31, 9.32, and 9.33 allow remote attackers to hijack the authentication of unspecified victims for requests that (1) insert XSS sequences or (2) execute arbitrary code.

CVSS vector

AV:N/AC:M/C:P/I:P/A:PExploitability: 8.6 | Impact: 6.4

Affected Packages1 packages

NVDhp/service_manager4 versions+3

🔴Vulnerability Details

2
GHSA
GHSA-h2fp-369j-gmwq: Multiple cross-site request forgery (CSRF) vulnerabilities in HP Service Manager 92022-05-13
CVEList
CVE-2013-6202: Multiple cross-site request forgery (CSRF) vulnerabilities in HP Service Manager 92014-02-24
CVE-2013-6202 (MEDIUM CVSS 6.8) | Multiple cross-site request forgery | cvebase.io