CVE-2010-4100 is an unspecified vulnerability in HP Insight Control Performance Management versions prior to 6.1 update 2, allowing remote attackers to read arbitrary files. With a CVSS score of 5.0, it is a medium-severity vulnerability that can be exploited remotely with low attack complexity and no authentication required, leading to confidentiality impact. There is no known active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 6.1CPE matchmatch criteria | cpe:2.3:a:hp:insight_control_performance_management:*:*:*:*:*:*:*:* | ||
5.0CPE matchmatch criteria | cpe:2.3:a:hp:insight_control_performance_management:5.0:*:*:*:*:*:*:* | ||
5.2CPE matchmatch criteria | cpe:2.3:a:hp:insight_control_performance_management:5.2:*:*:*:*:*:*:* | ||
5.2.2CPE matchmatch criteria | cpe:2.3:a:hp:insight_control_performance_management:5.2.2:*:*:*:*:*:*:* | ||
6.0CPE matchmatch criteria | cpe:2.3:a:hp:insight_control_performance_management:6.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
[R1] HP Multiple Products switchFWInstallStatus.jsp logfile Parameter Arbitrary File Access
Oct 13, 2010[R1] HP Multiple Products switchFWInstallStatus.jsp logfile Parameter Arbitrary File Access
Oct 13, 2010[R1] HP Multiple Products switchFWInstallStatus.jsp logfile Parameter Arbitrary File Access
Oct 13, 2010[R1] HP Multiple Products switchFWInstallStatus.jsp logfile Parameter Arbitrary File Access
Oct 13, 2010