Remote Code Execution Vulnerability in HPE OpenCall Media Platform
CVE-2017-5799
8.8HIGH
Summary
A critical vulnerability in the HPE OpenCall Media Platform (OCMP) allows for remote code execution, potentially enabling an attacker to execute arbitrary code on the target system. This flaw affects all versions of OCMP prior to 3.4.2 RP201 for 3.x and 4.4.7 RP702 for 4.x. Exploiting this vulnerability may lead to unauthorized access and severe security breaches. Users are encouraged to update to the latest versions to mitigate risks associated with this vulnerability.
Affected Version(s)
OpenCall Media Platform (OCMP) prior to 3.4.2 RP201 (for OCMP 3.x), all versions prior to 4.4.7 RP702 (for OCMP 4.x)
References
EPSS Score
5% chance of being exploited in the next 30 days.
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved