Vulnerability record · CVE-2018-7092 · published 6 August 2018
CVE-2018-7092: HPE Intelligent Management Center path traversal allows arbitrary file deletion
Hp · Intelligent Management Center
HPE Intelligent Management Center Platform (IMC Plat) 7.3 E0506P09 contains a path traversal flaw (CWE-22) that can be reached remotely. An attacker can traverse directories to delete arbitrary files, which threatens availability and integrity of the management platform. The record names only this single version and gives no further detail on the vulnerable component.
Description
A potential security vulnerability has been identified in HPE Intelligent Management Center Platform (IMC Plat) 7.3 E0506P09. The vulnerability could be remotely exploited to allow for remote directory traversal leading to arbitrary file deletion.
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Automated analysis
high priorityUnauthenticated network-reachable arbitrary file deletion with a high EPSS score, though no KEV listing or known exploit is documented.
What it is
HPE Intelligent Management Center Platform (IMC Plat) 7.3 E0506P09 contains a path traversal flaw (CWE-22) that can be reached remotely. An attacker can traverse directories to delete arbitrary files, which threatens availability and integrity of the management platform. The record names only this single version and gives no further detail on the vulnerable component.
Impact
An unauthenticated remote attacker can delete arbitrary files on the host, potentially disrupting IMC services or destroying configuration and data. The CVSS vector scores integrity impact only (I:H), with no confidentiality or availability component recorded.
Attack surface
The CVSS vector is AV:N/AC:L/PR:N/UI:N, so the flaw is network-reachable with no authentication and no user interaction. The description does not identify the specific endpoint or parameter used for traversal.
Exploitation
CVE-2018-7092 is not listed in CISA KEV and no ransomware use is documented, but EPSS is high at 0.527 (99th percentile), indicating elevated likelihood of exploitation activity. References are vendor and third-party advisories only, with no public exploit tag.
What to do
- Apply the HPE vendor fix for IMC Plat 7.3 E0506P09 per HPE security bulletin hpesbhf03872en_us, or upgrade to a supported release.
- Restrict network access to IMC management interfaces to trusted administrative networks and block exposure to the internet.
- Run IMC services with least privilege and isolate the host so file deletion cannot reach critical system or backup paths.
- Maintain offline backups of IMC configuration and data to recover from destructive file deletion.
- Monitor vendor advisories for updated guidance since the record names only one affected version.
Detection
- Alert on file deletion or modification events in IMC installation and data directories outside normal maintenance windows.
- Monitor IMC web logs for traversal sequences such as ../ or encoded variants in request paths and parameters.
- Baseline and integrity-check critical IMC files and configuration to detect unexpected removal.
- Watch for anomalous unauthenticated requests to IMC management endpoints from external or unusual source addresses.
This assessment is produced automatically and is not human-reviewed. Verify against the vendor advisory before acting on it.
Affected products
1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| http://www.securitytracker.com/id/1041412 | Third Party AdvisoryVDB Entry |
| https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03872en_us | Vendor Advisory |
| http://www.securitytracker.com/id/1041412 | Third Party AdvisoryVDB Entry |
| https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03872en_us | Vendor Advisory |
Track CVE-2018-7092 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2018-7092), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.