VulnerabilityModified
CVE-2017-5798
A Remote Code Execution vulnerability in HPE OpenCall Media Platform (OCMP) was found.
MEDIUM 6.1EPSS 7.99%
Does this matter?
Lower severity and a low EPSS score (7.99%). Track it; it rarely justifies an emergency change on its own.
Description
A Remote Code Execution vulnerability in HPE OpenCall Media Platform (OCMP) was found. The vulnerability impacts OCMP versions prior to 3.4.2 RP201 (for OCMP 3.x), all versions prior to 4.4.7 RP702 (for OCMP 4.x).
- CVSS 3.0
- 6.1 MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
- EPSS
- 7.99% probability · 94th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-79
- Affected
- hp/opencall media platform
- Source
- security-alert@hpe.com
References
- http://www.securityfocus.com/bid/98013Third Party Advisory, VDB Entry
- https://support.hpe.com/hpsc/doc/public/display?docId=emr_na-hpesbgn03686en_usVendor Advisory
- https://www.exploit-db.com/exploits/41927/Exploit, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/98013Third Party Advisory, VDB Entry
- https://support.hpe.com/hpsc/doc/public/display?docId=emr_na-hpesbgn03686en_usVendor Advisory
- https://www.exploit-db.com/exploits/41927/Exploit, Third Party Advisory, VDB Entry
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.