CVE-2020-24649: Input Validation
A remote bytemessageresource transformentity" input validation code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-24649?
CVE-2020-24649 has been classified as a critical vulnerability due to its potential for remote code execution.
How does CVE-2020-24649 affect HPE Intelligent Management Center?
CVE-2020-24649 allows an attacker to execute arbitrary code remotely through input validation vulnerabilities in HPE Intelligent Management Center.
How do I fix CVE-2020-24649?
To mitigate CVE-2020-24649, update HPE Intelligent Management Center to version 7.3 (E0705P07) or later.
Which versions of HPE Intelligent Management Center are affected by CVE-2020-24649?
CVE-2020-24649 affects all versions of HPE Intelligent Management Center prior to 7.3 (E0705P07).
Is there a workaround for CVE-2020-24649 until a patch is applied?
Currently, there are no known workarounds for CVE-2020-24649 and immediate patching is recommended.