Vulnerability record · CVE-2012-5201 · published 9 March 2013
CVE-2012-5201: HP Intelligent Management Center remote code execution flaw
Hp · Intelligent Management Center
HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 contain an unspecified vulnerability that lets remote attackers execute arbitrary code. The record gives no root cause, affected component or attack vector detail, so defenders must rely on the vendor advisory and the CVSS vector. It matters because the flaw is network-reachable, needs no authentication and yields full confidentiality, integrity and availability impact.
Description
Unspecified vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1611.
AV:N/AC:L/Au:N/C:C/I:C/A:C
Automated analysis
critical priorityCVSS 2.0 score of 10 with network reachability, no authentication and full impact, plus a very high EPSS percentile, makes this a top remediation priority despite the thin technical detail.
What it is
HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 contain an unspecified vulnerability that lets remote attackers execute arbitrary code. The record gives no root cause, affected component or attack vector detail, so defenders must rely on the vendor advisory and the CVSS vector. It matters because the flaw is network-reachable, needs no authentication and yields full confidentiality, integrity and availability impact.
Impact
An unauthenticated remote attacker can execute arbitrary code on the iMC/ANM server, gaining full control of the host and the network management data it holds.
Attack surface
The CVSS vector AV:N/AC:L/Au:N/C:C/I:C/A:C indicates the flaw is reachable over the network with no authentication and no user interaction. The specific interface or protocol is not described in the record.
Exploitation
Not listed in CISA KEV and no public exploit reference is tagged, but EPSS is 0.63744 (99.18th percentile), indicating a high modeled likelihood of exploitation activity.
What to do
- Upgrade HP iMC and iMC for ANM to version 5.2 E0401 or later per the HP vendor advisory.
- Restrict network access to iMC/ANM management interfaces to trusted administrative networks only.
- Place iMC/ANM behind a firewall or jump host and block direct internet exposure.
- Monitor HP security bulletins for updated fixes if the E0401 build is not deployable.
- Audit iMC/ANM service accounts and credentials for signs of compromise after any exposure.
Detection
- Review iMC/ANM server logs for unexpected process creation or command execution by the application service account.
- Monitor network traffic to iMC/ANM management ports for anomalous inbound connections from untrusted sources.
- Check for unexpected files, web shells or new services on iMC/ANM hosts.
- Correlate IDS/IPS alerts against iMC/ANM endpoints for exploit attempts targeting the management interface.
This assessment is produced automatically and is not human-reviewed. Verify against the vendor advisory before acting on it.
Affected products
2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| http://marc.info/?l=bugtraq&m=136268852804156&w=2 | Third Party Advisory |
| https://h20566.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c03689276 | Vendor Advisory |
| http://marc.info/?l=bugtraq&m=136268852804156&w=2 | Third Party Advisory |
| https://h20566.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c03689276 | Vendor Advisory |
Track CVE-2012-5201 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2012-5201), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.