Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2017-12500Improper Input Validation in Packard Enterprise Intelligent Management Center Plat

Severity
8.8HIGHNVD
EPSS
9.2%
top 7.29%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedFeb 15
Latest updateMay 14

Description

A Remote Code Execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version PLAT 7.3 (E0504) was found. The problem was resolved in HPE Intelligent Management Center PLAT v7.3 (E0506) or any subsequent version.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-j388-9pmg-qp96: A Remote Code Execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version PLAT 72022-05-14
CVEList
CVE-2017-12500: A Remote Code Execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version PLAT 72018-02-15

💥Exploits & PoCs

1
Exploit-DB
HPE iMC 7.3 - Remote Code Execution (Metasploit)2018-05-18
CVE-2017-12500 — Improper Input Validation | cvebase