First published: Wed Jun 05 2019(Updated: )
A SQL injection code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09.
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP Intelligent Management Center | <7.3 | |
HP Intelligent Management Center | =7.3 | |
HP Intelligent Management Center | =7.3-e0503 | |
HP Intelligent Management Center | =7.3-e0504 | |
HP Intelligent Management Center | =7.3-e0504p02 | |
HP Intelligent Management Center | =7.3-e0504p04 | |
HP Intelligent Management Center | =7.3-e0506 | |
HP Intelligent Management Center | =7.3-e0506p03 | |
HP Intelligent Management Center | =7.3-e0506p07 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-11970 is classified as a critical severity vulnerability.
To fix CVE-2019-11970, upgrade HPE Intelligent Management Center to version 7.3 E0506P10 or later.
The impact of CVE-2019-11970 allows an attacker to execute arbitrary SQL commands via crafted inputs.
CVE-2019-11970 affects versions of HPE Intelligent Management Center prior to 7.3 E0506P09.
There is currently no known workaround for CVE-2019-11970; updating the software is recommended.