SQL Injection Vulnerability in HPE Intelligent Management Center
CVE-2019-11973
8.8HIGH
Key Information:
- Vendor
HP
- Vendor
- CVE Published:
- 5 June 2019
What is CVE-2019-11973?
A SQL injection code execution vulnerability exists in HPE Intelligent Management Center (IMC) PLAT versions prior to 7.3 E0506P09. This issue allows an attacker to execute arbitrary SQL commands via crafted input, potentially compromising the integrity and confidentiality of the database. Organizations using affected versions of HPE IMC are encouraged to take immediate steps to mitigate this risk, including applying patches and following best practices for secure database management.
Affected Version(s)
HPE Intelligent Management Center (IMC) PLAT 7.3 E0506P09 and earlier