HTTP: HPE Intelligent Management Center FileDownloadServlet Information Disclosure

An information disclosure vulnerability has been reported in the Service Operation Manager Module of HPE Intelligent Management Center. Successful exploitation could allow an attacker to disclose sensitive information under the context of SYSTEM from the target host.

Extended Description

A Remote Unauthenticated Disclosure of Information vulnerability in HPE Intelligent Management Center (IMC) SOM version v7.3 (E0501) was found.

Affected Products

Hp intelligent_management_center

References

CVE: CVE-2017-5797

Short Name
HTTP:HPE-INTELLIGENT-CENTER-ID
Severity
Major
Recommended
True
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2017-5797 Center Disclosure FileDownloadServlet HPE Information Intelligent Management
Release Date
05/18/2017
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3525
False Positive
Unknown
Vendors

Hp

CVSS Score

7.8

Found a potential security threat?