Exploitation Summary
EIP tracks 1 public exploit for CVE-2012-5203.
Includes Metasploit module auxiliary/scanner/http/hp_imc_reportimgservlt_traversal.
AI-analyzed exploit summary This Metasploit module exploits a directory traversal vulnerability in HP Intelligent Management Center's ReportImgServlt to retrieve arbitrary files with SYSTEM privileges. It sends a crafted HTTP GET request with traversal sequences to bypass authentication and access files outside the intended directory.
Description
Unspecified vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors, aka ZDI-CAN-1613.
Exploits (1)
This Metasploit module exploits a directory traversal vulnerability in HP Intelligent Management Center's ReportImgServlt to retrieve arbitrary files with SYSTEM privileges. It sends a crafted HTTP GET request with traversal sequences to bypass authentication and access files outside the intended directory.