CVE-2017-12548 Information

Description

A local arbitrary command execution vulnerability in HPE System Management Homepage for Windows and Linux version prior to v7.6.1 was found.

CVSS Vector

CVSS:3.0/AV:L/AC:H/PR:H/UI:R/S:U/C:N/I:H/A:H

Reference

http://www.securityfocus.com/bid/101029 http://www.securitytracker.com/id/1039437 https://support.hpe.com/hpsc/doc/public/display?docId=emr_na-hpesbmu03753en_us

Attack Complexity

HIGH

Privileges Required

HIGH

User Interaction Required

HIGH

Scope

REQUIRED

Confidentiality Impact

UNCHANGED

Integrity Impact

NONE

Availability Impact

HIGH

Base Score

HIGH

Base Severity

5.6

Share on: