First published: Sun Oct 13 2013(Updated: )
SQL injection vulnerability in HP Intelligent Management Center (iMC) and HP IMC Service Operation Management Software Module allows remote attackers to execute arbitrary SQL commands via unspecified vectors, aka ZDI-CAN-1664.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP IMC Service Operation Management Software Module | ||
HP Intelligent Management Center Platform |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-4827 has been classified with a medium severity rating due to its potential for SQL injection attacks.
To fix CVE-2013-4827, ensure that you apply the latest patches provided by HP for both the HP Intelligent Management Center and the HP IMC Service Operation Management Software Module.
The potential impacts of CVE-2013-4827 include unauthorized access to the database and the possibility of executing arbitrary SQL commands.
Organizations using HP Intelligent Management Center and HP IMC Service Operation Management Software Module are affected by CVE-2013-4827.
While there have been no confirmed reports of active exploitation, the nature of SQL injection vulnerabilities means they can be targeted by attackers.