SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2017-12524

A Remote Code Execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version PLAT 7.3 (E0504) was found.

HIGH 8.8EPSS 5.61%

Does this matter?

High impact if exploited, but EPSS currently rates exploitation as unlikely (5.61%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.

Description

A Remote Code Execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version PLAT 7.3 (E0504) was found. The problem was resolved in HPE Intelligent Management Center PLAT v7.3 (E0506) or any subsequent version.

CVSS 3.0
8.8 HIGHCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS
5.61% probability · 92th percentile
CISA KEV
Not listed
Weakness
CWE-20
Affected
hp/intelligent management center
Source
security-alert@hpe.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.