CVE-2017-5821: Critical severity HP Intelligent Management Center vulnerability
Published Feb 15, 2018
·Updated
A Remote Code Execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version 7.3 E0504P04 was found.
Affected Software
4 affected components
HP Intelligent Management Center<7.3
HP Intelligent Management Center=7.3
HP Intelligent Management Center=7.3-e0503p02
HP Intelligent Management Center=7.3-e0504p02
Event History
Feb 15, 2018
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
DescriptionWeakness
Frequently Asked Questions
1
Which deployment is identified as affected?
The affected product is HPE Intelligent Management Center (iMC) PLAT version 7.3 E0504P04. The provided CVSS vector indicates the vulnerable service is remotely reachable over the network.
2
What does an attacker need to exploit this issue?
The CVSS vector indicates low attack complexity, no required privileges, and no user interaction. An unauthenticated remote attacker could potentially exploit the issue where the affected service is reachable.
3
What is the potential impact of successful exploitation?
The vulnerability has maximum stated impact on confidentiality, integrity, and availability in the supplied CVSS vector. Successful exploitation could therefore compromise data, alter system state, and disrupt service.