CVE-2014-7874: HP HP-Ux
Medium severity, CVSS 6.8. EPSS: 1.6% chance of exploitation in the next 30 days.
Cross-site request forgery (CSRF) vulnerability in HP System Management Homepage (SMH) before 3.2.3 on HP-UX B.11.23, and before 3.2.8 on HP-UX B.11.31, allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
Affected products
- HP HP-Ux: version b.11.23 only; version b.11.31 only
- HP System Management Homepage: up to and including 3.2.2; up to and including 3.2.7
Published 2014-10-19. Last modified 2026-06-17.