CVE-2012-5202
HP Intelligent Management Center < 5.2 E0401 - Remote Information Disclosure, Data Modification, or Denial of Service
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2012-5202.
Includes Metasploit module auxiliary/scanner/http/hp_imc_faultdownloadservlet_traversal.
AI-analyzed exploit summary This Metasploit module exploits a directory traversal vulnerability in HP Intelligent Management Center's FaultDownloadServlet to retrieve arbitrary files with SYSTEM privileges. It sends a crafted HTTP GET request with traversal sequences to bypass authentication and access sensitive files.
Description
Unspecified vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors, aka ZDI-CAN-1612.
Exploits (1)
This Metasploit module exploits a directory traversal vulnerability in HP Intelligent Management Center's FaultDownloadServlet to retrieve arbitrary files with SYSTEM privileges. It sends a crafted HTTP GET request with traversal sequences to bypass authentication and access sensitive files.