CVE-2020-7151: Critical severity hp intelligent management center vulnerability
A faulttrapgroupselect expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-7151?
CVE-2020-7151 is a faulttrapgroupselect expression language injection remote code execution vulnerability found in HPE Intelligent Management Center (iMC) versions prior to iMC PLAT 7.3 (E0705P07).
What is the severity of CVE-2020-7151?
CVE-2020-7151 has a severity rating of 9.8 (Critical).
Which versions of HPE Intelligent Management Center are affected by CVE-2020-7151?
HPE Intelligent Management Center versions prior to iMC PLAT 7.3 (E0705P07) are affected by CVE-2020-7151.
How does CVE-2020-7151 work?
CVE-2020-7151 allows remote code execution by injecting malicious code through the faulttrapgroupselect expression language.
How can I fix CVE-2020-7151?
To fix CVE-2020-7151, update to a version of HPE Intelligent Management Center that is equal to or later than iMC PLAT 7.3 (E0705P07).