CVE-2012-5209
Unspecified vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1659.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (8.58%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Unspecified vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1659.
- CVSS 2.0
- 10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 8.58% probability · 95th percentile
- CISA KEV
- Not listed
- Affected
- hp/intelligent management center · hp/intelligent management center for automated network manager
- Source
- hp-security-alert@hp.com
References
- http://marc.info/?l=bugtraq&m=136268852804156&w=2Third Party Advisory
- https://h20566.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c03689276Vendor Advisory
- http://marc.info/?l=bugtraq&m=136268852804156&w=2Third Party Advisory
- https://h20566.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c03689276Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.