HPE Intelligent Management Center (IMC) PLAT: 83 records in one advisory
83 records announced together, published 2019-06-05, every one of them citing the same advisory.
The advisory
Every record in this batch cites https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03930en_us. That is the CNA's own reference, held in the index, and it is why these records are on one page.
What the records offer
No record in this batch publishes a fixed version in held sources.
No record in this batch is listed by CISA in held sources.
Held sources describe every record in this batch identically. Nothing but the identifier and the publication time separates one from another here.
Most commonly mapped weakness across the batch: remote code execution.
What tells these apart
Nothing held does. One advisory announced every record here on the same day, under the same title or none, against the same product, and the index holds no distinguishing value for any of them. The rows below are listed by identifier for that reason. That is the state of the sources, not a gap in this page.
What this page does not cover
This batch is 83 of the 104 records that cite the same advisory. The other 21 are different findings announced alongside it.
None of those 21 is grouped with any other. Each one has its own record page and nothing else.
The batch is what one advisory announced. It is not every record sharing this weakness, this product or this mechanism, and nothing here is scoped to any estate.
What this batch was researched, not held
HPE released a year of Intelligent Management Center identifiers in one day, each with one sentence
Every record in this group was published on 5 June 2019, and HPE assigned every one of them itself. They did not all start at the same time. CVE-2018-7121 was reserved on 15 February 2018 and CVE-2019-11941 on 13 May 2019, fifteen months apart, and both became public on the same afternoon. Each record carries one sentence and nothing else: a remote code execution vulnerability was identified in HPE Intelligent Management Center PLAT earlier than version 7.3 E0506P09. That sentence names the product and the version that fixes it. It does not name a component, a parameter, a reporter or a way in. Every record also carries exactly one reference, the same HPE bulletin. Separately, and through a different route, Trend Micro's Zero Day Initiative had already published two Intelligent Management Center findings from Matthias Kaiser and Steven Seeley of Incite Team without waiting for HPE. Both of those advisories say the vulnerability is being disclosed publicly without a patch in accordance with the Zero Day Initiative's 120 day deadline. Those two carry CVE-2019-5347 and CVE-2019-5385, which are not records in this group.
These records were published on one day because HPE released them on one day. They share a fixed version number and a sentence. Nothing in any of them says what the flaw is, so nothing in any of them says whether two of them are alike. Our index holds 83 of the 104 records that name this bulletin.
The single sentence copied into every record names no component, no parameter and no reporter, so two records in this group cannot be told apart by their text and neither can be matched to any published research. The two Zero Day Initiative advisories that do describe named Intelligent Management Center flaws in detail carry different identifiers, so they describe neighbouring work and not these records. The HPE bulletin returns no readable content to an automated fetch, so we cannot check what it says beyond what the records repeat.
Written from cveawg.mitre.org, cveawg.mitre.org, zerodayinitiative.com, zerodayinitiative.com, support.hpe.com. Reviewed for whether every claim traces to one of them, by two independent graders, citation support 4.44 of 5, uniqueness 4 of 5. Stated at high confidence. Nothing in this box is a value the index holds, and none of it opens a receipt.
Listed for shared announcement, not shared vulnerability. Each record here is its own finding with its own page, and fixing one does not address another.
83 records, read from the index as it stood on 2026-09-20. Every row opens the record it names, and every value on that record opens its own receipt.