CVE-2017-5792

CRITICAL

HPE Intelligent Management Center PLAT 7.3 E0504P2 - Remote Code Execution via Untrusted Data Deserialization

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2017-5792. PoCs published by Chris Lyne, scanfsec.

AI-analyzed exploit summary This exploit leverages Java RMI Registry deserialization vulnerability in HPE iMC 7.3 to achieve remote code execution. It uses ysoserial to generate a payload that launches calc.exe on the target system.

Description

A Remote Code Execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version 7.3 E0504P2 was found.

Exploits (2)

exploitdb WORKING POC
by Chris Lyne · textremotewindows
https://www.exploit-db.com/exploits/43927

This exploit leverages Java RMI Registry deserialization vulnerability in HPE iMC 7.3 to achieve remote code execution. It uses ysoserial to generate a payload that launches calc.exe on the target system.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: HPE iMC PLAT v7.3 (E0504) Standard
No auth needed
Prerequisites: Network access to the target's RMI Registry port (21195) · ysoserial tool
devstral-2 · analyzed Feb 16, 2026 Full analysis →
nomisec WORKING POC 1 stars
by scanfsec · poc
https://github.com/scanfsec/HPE-iMC-7.3-RMI-Java-Deserialization

This PoC exploits a Java RMI Registry deserialization vulnerability in HPE iMC 7.3 to achieve remote code execution. It uses ysoserial to generate a payload that launches calc.exe on the target system.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: HPE iMC PLAT v7.3 (E0504) Standard
No auth needed
Prerequisites: Network access to the target's RMI Registry port (21195) · ysoserial tool
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (6)

Core 6
Core References
Third Party Advisory, VDB Entry exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/43927/
Third Party Advisory x_refsource_misc
https://www.tenable.com/security/research/tra-2017-18
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/96769
Third Party Advisory x_refsource_misc
https://www.tenable.com/security/research/tra-2018-01

Scores

CVSS v3 9.8
EPSS 0.3548
EPSS Percentile 98.2%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-502
Status published
Products (1)
hp/intelligent_management_center 7.3 e0504p02
Published Feb 15, 2018
Tracked Since Feb 18, 2026