CVE-2012-5209
Hewlett-Packard Intelligent Management Center flexFileUpload Servlet Remote Code Execution Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Unspecified vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1659.
Vulnerabilidad no especificada en HP Intelligent Management Center (iMC) y Intelligent Management Center para Automated Network Manager (ANM) anterior a v5.2 E0401, permite a atacantes remotos ejecutar código de su elección a través de vectores desconocidos, también conocida como ZDI-CAN-1659.
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of HP Intelligent Management Center. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the flexFileUpload servlet. This servlet exposes file upload functionalities and suffers from a directory traversal vulnerability which allows a file to be written to the server. By abusing this behavior an attacker can place a file and leverage the situation to achieve remote code execution as the SYSTEM user.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2012-10-01 CVE Reserved
- 2013-03-08 CVE Published
- 2024-06-02 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (2)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://marc.info/?l=bugtraq&m=136268852804156&w=2 | 2019-10-09 | |
https://h20566.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c03689276 | 2019-10-09 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Hp Search vendor "Hp" | Intelligent Management Center Search vendor "Hp" for product "Intelligent Management Center" | <= 5.1 Search vendor "Hp" for product "Intelligent Management Center" and version " <= 5.1" | e0202, enterprise |
Affected
| ||||||
Hp Search vendor "Hp" | Intelligent Management Center For Automated Network Manager Search vendor "Hp" for product "Intelligent Management Center For Automated Network Manager" | <= 5.1 Search vendor "Hp" for product "Intelligent Management Center For Automated Network Manager" and version " <= 5.1" | e0202 |
Affected
| ||||||
Hp Search vendor "Hp" | Intelligent Management Center Search vendor "Hp" for product "Intelligent Management Center" | <= 5.1 Search vendor "Hp" for product "Intelligent Management Center" and version " <= 5.1" | e0202 |
Affected
| ||||||
Hp Search vendor "Hp" | Intelligent Management Center Search vendor "Hp" for product "Intelligent Management Center" | 5.0 Search vendor "Hp" for product "Intelligent Management Center" and version "5.0" | - |
Affected
| ||||||
Hp Search vendor "Hp" | Intelligent Management Center Search vendor "Hp" for product "Intelligent Management Center" | 5.0 Search vendor "Hp" for product "Intelligent Management Center" and version "5.0" | e0101 |
Affected
| ||||||
Hp Search vendor "Hp" | Intelligent Management Center Search vendor "Hp" for product "Intelligent Management Center" | 5.0 Search vendor "Hp" for product "Intelligent Management Center" and version "5.0" | e0101h03 |
Affected
| ||||||
Hp Search vendor "Hp" | Intelligent Management Center Search vendor "Hp" for product "Intelligent Management Center" | 5.0 Search vendor "Hp" for product "Intelligent Management Center" and version "5.0" | e0101h04 |
Affected
| ||||||
Hp Search vendor "Hp" | Intelligent Management Center Search vendor "Hp" for product "Intelligent Management Center" | 5.0 Search vendor "Hp" for product "Intelligent Management Center" and version "5.0" | e0101l01 |
Affected
| ||||||
Hp Search vendor "Hp" | Intelligent Management Center Search vendor "Hp" for product "Intelligent Management Center" | 5.0 Search vendor "Hp" for product "Intelligent Management Center" and version "5.0" | e0101l02 |
Affected
| ||||||
Hp Search vendor "Hp" | Intelligent Management Center Search vendor "Hp" for product "Intelligent Management Center" | 5.1 Search vendor "Hp" for product "Intelligent Management Center" and version "5.1" | - |
Affected
| ||||||
Hp Search vendor "Hp" | Intelligent Management Center Search vendor "Hp" for product "Intelligent Management Center" | 5.1 Search vendor "Hp" for product "Intelligent Management Center" and version "5.1" | e0101p01 |
Affected
|