CVE-2018-7114
Estado: ModificadaCrítica (9.8)—
HPE Intelligent Management Center (IMC) prior to IMC PLAT 7.3 (E0605P06) is vulnerable to remote buffer overflow in dbman leading to code execution. This problem is resolved in IMC PLAT 7.3 (E0605P06) or subsequent versions.
CVSS
- Versión: 3.0
- Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Puntuación base: 9.8
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 33%
- Percentil entre todas las CVEs puntuadas: 98
- Fecha de la puntuación: 7/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (1)
CWE
- CWE-119
Referencias
- http://www.securityfocus.com/bid/106211
- http://www.securitytracker.com/id/1042182
- https://support.hpe.com/hpsc/doc/public/display?docId=hpesbhf03906en_us
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03906en_us
- http://www.securityfocus.com/bid/106211
- http://www.securitytracker.com/id/1042182
- https://support.hpe.com/hpsc/doc/public/display?docId=hpesbhf03906en_us
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03906en_us
JSON original (NVD)
Mostrar
{
"id": "CVE-2018-7114",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 10,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"authentication": "NONE",
"integrityImpact": "COMPLETE",
"accessComplexity": "LOW",
"availabilityImpact": "COMPLETE",
"confidentialityImpact": "COMPLETE"
},
"acInsufInfo": false,
"impactScore": 10,
"baseSeverity": "HIGH",
"obtainAllPrivilege": false,
"exploitabilityScore": 10,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
],
"cvssMetricV30": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.0",
"baseScore": 9.8,
"attackVector": "NETWORK",
"baseSeverity": "CRITICAL",
"vectorString": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
"integrityImpact": "HIGH",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "HIGH",
"privilegesRequired": "NONE",
"confidentialityImpact": "HIGH"
},
"impactScore": 5.9,
"exploitabilityScore": 3.9
}
]
},
"affected": [
{
"source": "security-alert@hpe.com",
"affectedData": [
{
"vendor": "Hewlett Packard Enterprise",
"product": "HPE Intelligent Management Center (IMC)",
"versions": [
{
"status": "affected",
"version": "prior to IMC PLAT 7.3 (E0605P06)"
}
]
}
]
}
],
"published": "2018-12-03T15:29:00.667",
"references": [
{
"url": "http://www.securityfocus.com/bid/106211",
"tags": [
"Third Party Advisory",
"VDB Entry"
],
"source": "security-alert@hpe.com"
},
{
"url": "http://www.securitytracker.com/id/1042182",
"tags": [
"Third Party Advisory",
"VDB Entry"
],
"source": "security-alert@hpe.com"
},
{
"url": "https://support.hpe.com/hpsc/doc/public/display?docId=hpesbhf03906en_us",
"tags": [
"Vendor Advisory"
],
"source": "security-alert@hpe.com"
},
{
"url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03906en_us",
"tags": [
"Vendor Advisory"
],
"source": "security-alert@hpe.com"
},
{
"url": "http://www.securityfocus.com/bid/106211",
"tags": [
"Third Party Advisory",
"VDB Entry"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securitytracker.com/id/1042182",
"tags": [
"Third Party Advisory",
"VDB Entry"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://support.hpe.com/hpsc/doc/public/display?docId=hpesbhf03906en_us",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03906en_us",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-119"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "HPE Intelligent Management Center (IMC) prior to IMC PLAT 7.3 (E0605P06) is vulnerable to remote buffer overflow in dbman leading to code execution. This problem is resolved in IMC PLAT 7.3 (E0605P06) or subsequent versions."
},
{
"lang": "es",
"value": "HPE Intelligent Management Center (IMC) en versiones anteriores a IMC PLAT 7.3 (E0605P06) es vulnerable a un desbordamiento de búfer remoto en dbman que conduce a una ejecución de código. El problema se ha resuelto en IMC PLAT 7.3 E0605P06 o en versiones posteriores."
}
],
"lastModified": "2026-06-17T02:02:41.400",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:hp:intelligent_management_center:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "70962382-6FA5-4E21-81D8-09FE48D77A54",
"versionEndExcluding": "7.3"
},
{
"criteria": "cpe:2.3:a:hp:intelligent_management_center:7.3:-:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "7AA88901-0BB2-46C5-AAA4-38D41EE656F9"
},
{
"criteria": "cpe:2.3:a:hp:intelligent_management_center:7.3:e0503:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B8A100F0-6CAE-4705-A2ED-862D0016E3DA"
},
{
"criteria": "cpe:2.3:a:hp:intelligent_management_center:7.3:e0504:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "F5F6C54E-D905-49E3-B848-8401E0B41B5E"
},
{
"criteria": "cpe:2.3:a:hp:intelligent_management_center:7.3:e0504p02:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "16728216-DDCF-4842-9C7F-02FE7E055E70"
},
{
"criteria": "cpe:2.3:a:hp:intelligent_management_center:7.3:e0504p04:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "0FC4C972-D942-40A3-AFDE-A3A2B34416BB"
},
{
"criteria": "cpe:2.3:a:hp:intelligent_management_center:7.3:e0506:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "394C1F2C-5852-4A99-82AD-1B874E8F4164"
},
{
"criteria": "cpe:2.3:a:hp:intelligent_management_center:7.3:e0506p03:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "EB8C4E2F-25CF-4949-A6FE-7FDF6F27B36D"
},
{
"criteria": "cpe:2.3:a:hp:intelligent_management_center:7.3:e0506p07:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "8344F117-C492-4FF9-A982-B7293E62C5F4"
},
{
"criteria": "cpe:2.3:a:hp:intelligent_management_center:7.3:e0506p09:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C98D14C4-58E4-4D59-84D5-02C87D461583"
},
{
"criteria": "cpe:2.3:a:hp:intelligent_management_center:7.3:e0605:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "187532C0-EF39-4730-9D3C-0C573B2A0318"
},
{
"criteria": "cpe:2.3:a:hp:intelligent_management_center:7.3:e0605h02:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "03CE933B-B0A7-4C1C-A273-84845685210F"
},
{
"criteria": "cpe:2.3:a:hp:intelligent_management_center:7.3:e0605h05:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "1DEA8788-5476-41ED-9546-39D4FCD24EC9"
},
{
"criteria": "cpe:2.3:a:hp:intelligent_management_center:7.3:e0605p04:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D906EEE0-33F5-4566-93A2-8783AD88582F"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "security-alert@hpe.com"
}