VulnerabilityModified
CVE-2018-7114
HPE Intelligent Management Center (IMC) prior to IMC PLAT 7.3 (E0605P06) is vulnerable to remote buffer overflow in dbman leading to code execution.
CRITICAL 9.8EPSS 32.8%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 32.8%, higher than 98% of all known CVEs. Patch or mitigate before the next change window.
Description
HPE Intelligent Management Center (IMC) prior to IMC PLAT 7.3 (E0605P06) is vulnerable to remote buffer overflow in dbman leading to code execution. This problem is resolved in IMC PLAT 7.3 (E0605P06) or subsequent versions.
- CVSS 3.0
- 9.8 CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 32.76% probability · 98th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-119
- Affected
- hp/intelligent management center
- Source
- security-alert@hpe.com
References
- http://www.securityfocus.com/bid/106211Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1042182Third Party Advisory, VDB Entry
- https://support.hpe.com/hpsc/doc/public/display?docId=hpesbhf03906en_usVendor Advisory
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03906en_usVendor Advisory
- http://www.securityfocus.com/bid/106211Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1042182Third Party Advisory, VDB Entry
- https://support.hpe.com/hpsc/doc/public/display?docId=hpesbhf03906en_usVendor Advisory
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03906en_usVendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.