← Vulnerability feed

Vulnerability record · CVE-2017-5817 · published 15 February 2018

CVE-2017-5817: HPE Intelligent Management Center input validation flaw enables remote code execution

Hp · Intelligent Management Center

HPE Intelligent Management Center (iMC) PLAT version 7.3 E0504P04 contains a remote code execution vulnerability rooted in improper input validation (CWE-20). The record gives no further detail on the vulnerable component or the exact input path, but the flaw is network-reachable and rated critical, so it matters for any organization still running this platform version.

9.8 CVSS 3.0 Critical EPSS 83% · top 0.3% CWE-20 · Improper input validation
9.8CVSS 3.0 base score, v2 10.0
83%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
8References, 4 tagged exploit
17 Jun 2026Last modified by NVD

Description

A Remote Code Execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version 7.3 E0504P04 was found.

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Automated analysis

Generated by VULONE's analysis model from the NVD record, CISA KEV and EPSS data on 18 September 2026. Confidence: medium.

critical priorityCVSS 9.8 with network reachability, no authentication, no user interaction, and public exploit code make this an urgent patch-or-isolate case.

What it is

HPE Intelligent Management Center (iMC) PLAT version 7.3 E0504P04 contains a remote code execution vulnerability rooted in improper input validation (CWE-20). The record gives no further detail on the vulnerable component or the exact input path, but the flaw is network-reachable and rated critical, so it matters for any organization still running this platform version.

Impact

An unauthenticated remote attacker can execute arbitrary code on the affected iMC server, gaining full control of the host and any data or managed devices it administers.

Attack surface

The CVSS vector (AV:N/AC:L/PR:N/UI:N) indicates the flaw is reachable over the network with no authentication and no user interaction. The description does not identify the specific endpoint or protocol involved.

Exploitation

Public exploit code exists, as shown by two Exploit-DB references, and EPSS is very high (0.826, 99.6th percentile), though the CVE is not listed in CISA KEV. No ransomware association is documented.

What to do

  • Upgrade HPE Intelligent Management Center off the affected 7.3 E0504P04 release to a vendor-supported fixed version per HPE advisory hpesbhf03745en_us.
  • If patching cannot be done immediately, restrict network access to iMC management interfaces to trusted administrative networks only.
  • Place iMC behind a firewall or access-control layer so its management ports are not exposed to untrusted networks or the internet.
  • Monitor HPE advisories for updated fixed builds and apply them as they are released.

Detection

  • Review iMC server logs and web/proxy logs for unusual requests or command execution patterns against management interfaces.
  • Alert on unexpected child processes or command shells spawned by the iMC application or its web server.
  • Monitor for outbound connections from the iMC host to unfamiliar external addresses, which may indicate post-exploitation activity.
  • Audit network exposure of iMC management ports and flag any that are reachable from untrusted segments.

This assessment is produced automatically and is not human-reviewed. Verify against the vendor advisory before acting on it.

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2017-5817 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2013-4822HP Intelligent Management Center remote code execution flawHP Intelligent Management Center (iMC) and its Branch Intelligent Management System (BIMS) module contain an unspecified vulnerability that lets remo…EPSS 63%analysed10.0CVE-2012-5201HP Intelligent Management Center remote code execution flawHP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 contain an unspecified …EPSS 64%analysed10.0CVE-2012-5209Hp intelligent management center vulnerabilityUnspecified vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 …EPSS 8.6%10.0CVE-2012-3274HP Intelligent Management Center UAM stack buffer overflow via log dataHP Intelligent Management Center (IMC) before 5.1 E0101P01 contains a stack-based buffer overflow in uam.exe in the User Access Manager component, tr…EPSS 64%analysed10.0CVE-2012-3253Hp intelligent management center vulnerabilityMultiple unspecified vulnerabilities in HP Intelligent Management Center (IMC) before 5.0 E0101P05 allow remote attackers to execute arbitrary code v…EPSS 9.6%10.0CVE-2011-1867Hp endpoint admission defense memory buffer overflow vulnerabilityStack-based buffer overflow in iNodeMngChecker.exe in the User Access Manager (UAM) 5.0 before SP1 E0101P03 and Endpoint Admission Defense (EAD) 5.0 …EPSS 26%10.0CVE-2011-2331Hp intelligent management center vulnerabilityInteger overflow in img.exe in HP Intelligent Management Center (IMC) allows remote attackers to execute arbitrary code via a crafted length value in…EPSS 13%10.0CVE-2011-1852Hp intelligent management center memory buffer overflow vulnerabilityMultiple stack-based buffer overflows in tftpserver.exe in HP Intelligent Management Center (IMC) 5.0 before E0101L02 allow remote attackers to execu…EPSS 15%

Source: NIST National Vulnerability Database (record CVE-2017-5817), CISA KEV, FIRST EPSS (scores of 2026-09-24). This page is refreshed as NVD updates the record.