HPE.IMC.TopoDebugServlet.Insecure.Deserialization

description-logoDescription

This indicats an attack attempt to exploit an Information Disclosure Vulnerability in HP Intelligent Management Center
A remote, authenticated attacker can exploit this vulnerability by sending a request message with a specially crafted serialized object. Successful exploitation results in the execution of arbitrary code under the context of the SYSTEM or root user.

affected-products-logoAffected Products

HP Intelligent Management Center

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

HP has not released an advisory or patch regarding this vulnerability

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2019-04-08 14.588 Default_action:pass:drop
2019-03-28 14.582