RULE(RULE ID:321804)

Rule General Information
Release Date: 2019-06-11
Rule Name: HPE Intelligent Management Center FileDownloadServlet fileName Directory Traversal Vulnerability (CVE-2017-5795)
Severity:
CVE ID:
Rule Protection Details
Description: A Local Arbitrary File Download vulnerability in HPE Intelligent Management Center (IMC) version PLAT 7.2 E0403P06 was found.
Impact: An attacker can abtain sensitive information of the target victim, and do malicious actions to gain profits using the information.
Affected OS: Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device, Mac OS, iOS, Android, Others
Reference: SecurityFocusBID:96773
https://support.hpe.com/hpsc/doc/public/display?docId=emr_na-hpesbhf03714en_us
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
https://support.hpe.com/hpsc/doc/public/display?docId=emr_na-hpesbhf03714en_us