905
VMScore

CVE-2017-12500

Published: 15/02/2018 Updated: 08/03/2019
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 905
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

A Remote Code Execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version PLAT 7.3 (E0504) was found. The problem was resolved in HPE Intelligent Management Center PLAT v7.3 (E0506) or any subsequent version.

Vulnerable Product Search on Vulmon Subscribe to Product

hp intelligent management center 7.3

Exploits

# Exploit Title: HPE iMC EL Injection Unauthenticated RCE # Date: 6 February, 2018 # Exploit Author: TrendyTofu # Vendor Homepage: wwwhpecom/us/en/homehtml # Software Link: h10145www1hpecom/Downloads/SoftwareReleasesaspx?ProductNumber=JG747AAE&lang=en&cc=us&prodSeriesId=4176535 # Version: prior to 73 E0504P04 # Te ...
This Metasploit module exploits an expression language injection vulnerability, along with an authentication bypass vulnerability in Hewlett Packard Enterprise Intelligent Management Center before version 73 E0504P04 to achieve remote code execution The HP iMC server suffers from multiple vulnerabilities allows unauthenticated attacker to execute ...