CVE-2017-5798 EXPLOIT
6.1
MEDIUM · CVSS 3.0 · EPSS 8% (pctl 95)
Patch early
A public exploit exists.
Description
A Remote Code Execution vulnerability in HPE OpenCall Media Platform (OCMP) was found. The vulnerability impacts OCMP versions prior to 3.4.2 RP201 (for OCMP 3.x), all versions prior to 4.4.7 RP702 (for OCMP 4.x).
Scoring
| CVSS | 6.1 (MEDIUM, v3.0) |
|---|---|
| Vector | CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
| EPSS | 7.99% — more likely to be exploited than 95% of all CVEs |
| Weakness | CWE-79 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2018-02-15 |
| Last modified | 2026-06-17 |
Affected (1)
| Vendor | Product |
|---|---|
| hp | opencall media platform |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | HPE OpenCall Media Platform (OCMP) 4.3.2 - Cross-Site Scripting / Remote File Inclusion | 2017-04-25 |
References
- http://www.securityfocus.com/bid/98013
- https://support.hpe.com/hpsc/doc/public/display?docId=emr_na-hpesbgn03686en_us
- https://www.exploit-db.com/exploits/41927/
- http://www.securityfocus.com/bid/98013
- https://support.hpe.com/hpsc/doc/public/display?docId=emr_na-hpesbgn03686en_us
- https://www.exploit-db.com/exploits/41927/
→ the Explorer · watch your stack · NVD