RULE(RULE ID:322037)

Rule General Information
Release Date: 2019-06-27
Rule Name: HP Intelligent Management Center BIMS UploadServlet Lack of Authentication and Directory Traversal Vulnerability (CVE-2013-4822)
Severity:
CVE ID:
Rule Protection Details
Description: Unspecified vulnerability in HP Intelligent Management Center (iMC) and HP IMC Branch Intelligent Management System Software Module (aka BIMS) allows remote attackers to execute arbitrary code via unknown vectors.
Impact: An attacker can abtain sensitive information of the target victim, and do malicious actions to gain profits using the information.
Affected OS: Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device, Mac OS, iOS, Android, Others
Reference: https://h20564.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c03943425
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
https://h20566.www2.hp.com/portal/site/hpsc/template.PAGE/public/kb/docDisplay/?spf_p.tpst=kbDocDisplay&spf;_p.prp_kbDocDisplay=wsrp-navigationalState%3DdocId%253Demr_na-c03943425-1%257CdocLocale%253D%257CcalledBy%253D&javax.portlet.begCacheTok;=com.vignette.cachetoken&javax.portlet.endCacheTok;=com.vignette.cachetoken