CVE-2013-3576: HP System Management Homepage

High severity, CVSS 9.0. EPSS: 66.6% chance of exploitation in the next 30 days.

ginkgosnmp.inc in HP System Management Homepage (SMH) allows remote authenticated users to execute arbitrary commands via shell metacharacters in the PATH_INFO to smhutil/snmpchp.php.en.

Affected products

  • HP System Management Homepage: any version

Published 2013-06-14. Last modified 2026-06-16.