Vulnerability Name: | CVE-2012-5202 (CCN-82679) | ||||||||
Assigned: | 2012-10-01 | ||||||||
Published: | 2013-03-07 | ||||||||
Updated: | 2019-10-09 | ||||||||
Summary: | Unspecified vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors, aka ZDI-CAN-1612. | ||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P) 5.5 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
5.5 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-noinfo | ||||||||
Vulnerability Consequences: | Obtain Information | ||||||||
References: | Source: MITRE Type: CNA CVE-2012-5202 Source: HP Type: Third Party Advisory SSRT100881 Source: CCN Type: BID-58675 HP Intelligent Management Center 'FaultDownloadServlet' Information Disclosure Vulnerability Source: XF Type: UNKNOWN hp-cve20125202-info-disc(82679) Source: HP Type: Vendor Advisory SSRT101014 Source: CCN Type: HP Security Bulletin HPSBGN02854 SSRT100881 rev.1 HP Intelligent Management Center (iMC), iMC TACACS+ Authentication Manager (TAM), and iMC User Access Manager (UAM), Cross Site Scripting (XSS), Remote Code Execution, Remote Disclosure of Information Source: CCN Type: ZDI-13-051 HP Intelligent Management Center FaultDownloadServlet Information Disclosure Vulnerability | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration 2: Configuration 3: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |