RULE(RULE ID:317506)

Rule General Information
Release Date: 2017-06-02
Rule Name: HPE Intelligent Management Center Fileuploadservlet Directory Traversal Vulnerability (CVE-2017-5794)
Severity:
CVE ID:
Rule Protection Details
Description: A directory traversal vulnerability was found in in HPE Intelligent Management Center. The vulnerability is caused by lacking of proper input sanitization on multipart form-data requests in FileUploadServlet.
Impact: An attacker can abtain sensitive information of the target victim, and do malicious actions to gain profits using the information.
Affected OS: Windows
Reference: https://support.hpe.com/hpsc/doc/public/display
Solutions
More advisories have been published on the website, please visit for more suggestions:
https://h20564.www2.hpe.com/hpsc/doc/public/display?docId=emr_na-hpesbhf03715en_us