vciy

HPE Intelligent Management Center (iMC): 52 records in one advisory

52 records announced together, published 2020-10-19, every one of them citing the same advisory.

The advisory

Every record in this batch cites https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbnw04036en_us. That is the CNA's own reference, held in the index, and it is why these records are on one page.

What the records offer

No record in this batch publishes a fixed version in held sources.

No record in this batch is listed by CISA in held sources.

Every record names something of its own, listed against it below.

Most commonly mapped weakness across the batch: actionselectcontent expression language…

What this page does not cover

This batch is 52 of the 64 records that cite the same advisory. The other 12 are different findings announced alongside it.

None of those 12 is grouped with any other. Each one has its own record page and nothing else.

The batch is what one advisory announced. It is not every record sharing this weakness, this product or this mechanism, and nothing here is scoped to any estate.

Listed for shared announcement, not shared vulnerability. Each record here is its own finding with its own page, and fixing one does not address another.

CVE-2020-24650legendlegend expression language injection remote…
CVE-2020-24651syslogtempletselectwinsyslogtempletselectwin expression language…
CVE-2020-24652addvsiinterfaceinfoaddvsiinterfaceinfo expression language…
CVE-2020-7141adddevicetoviewadddevicetoview expression language injection…
CVE-2020-7142eventinfo_contenteventinfo_content expression language injection…
CVE-2020-7143faultdevparassetfaultdevparasset expression language injection…
CVE-2020-7144comparefilesresultcomparefilesresult expression language…
CVE-2020-7145chooseperfviewchooseperfview expression language injection…
CVE-2020-7146devgroupselectdevgroupselect expression language injection…
CVE-2020-7147deployselectbootromdeployselectbootrom expression language…
CVE-2020-7148deployselectsoftwaredeployselectsoftware expression language…
CVE-2020-7150faultstatchoosefaulttypefaultstatchoosefaulttype expression language…
CVE-2020-7151faulttrapgroupselectfaulttrapgroupselect expression language…
CVE-2020-7152faultparassetfaultparasset expression language injection…
CVE-2020-7153iccselectdevtypeiccselectdevtype expression language injection…
CVE-2020-7154ifviewselectpageifviewselectpage expression language injection…
CVE-2020-7156faultinfo_contentfaultinfo_content expression language injection…
CVE-2020-7157selviewnavcontentselviewnavcontent expression language injection…
CVE-2020-7158perfselecttaskperfselecttask expression language injection…
CVE-2020-7159customtemplateselectcustomtemplateselect expression language…
CVE-2020-7160iccselectdeviceseriesiccselectdeviceseries expression language…
CVE-2020-7161reporttaskselectreporttaskselect expression language injection…
CVE-2020-7162operatorgroupselectcontentoperatorgroupselectcontent expression language…
CVE-2020-7163navigationtonavigationto expression language injection…
CVE-2020-7164operationselectoperationselect expression language injection…
CVE-2020-7165iccselectcommandiccselectcommand expression language injection…
CVE-2020-7166operatorgrouptreeselectcontentoperatorgrouptreeselectcontent expression…
CVE-2020-7167quicktemplateselectquicktemplateselect expression language…
CVE-2020-7168selectusergroupselectusergroup expression language injection…
CVE-2020-7171guidatadetailguidatadetail expression language injection…
CVE-2020-7172templateselecttemplateselect expression language injection…
CVE-2020-7173actionselectcontentactionselectcontent expression language…
CVE-2020-7174soapconfigcontentsoapconfigcontent expression language injection…
CVE-2020-7175iccselectdymicparamiccselectdymicparam expression language…
CVE-2020-7176viewtaskresultdetailfactviewtaskresultdetailfact expression language…
CVE-2020-7177wmiconfigcontentwmiconfigcontent expression language injection…
CVE-2020-7178mediaforactionmediaforaction expression language injection…
CVE-2020-7179thirdpartyperfselecttaskthirdpartyperfselecttask expression language…
CVE-2020-7180ictexpertdownloadictexpertdownload expression language injection…
CVE-2020-7181smsrulesdownloadsmsrulesdownload expression language injection…
CVE-2020-7182sshconfigsshconfig expression language injection remote…
CVE-2020-7183forwardredirectforwardredirect expression language injection…
CVE-2020-7184viewbatchtaskresultdetailfactviewbatchtaskresultdetailfact expression…
CVE-2020-7185tvxlanlegendtvxlanlegend expression language injection…
CVE-2020-7186powershellconfigcontentpowershellconfigcontent expression language…
CVE-2020-7187reportpage indexreportpage index expression language injection…
CVE-2020-7188userselectpagingcontentuserselectpagingcontent expression language…
CVE-2020-7190deviceselectdeviceselect expression language injection…
CVE-2020-7191devsoftseldevsoftsel expression language injection remote…
CVE-2020-7192devicethresholdconfigdevicethresholdconfig expression language…
CVE-2020-7194perfaddormoddevicemonitorperfaddormoddevicemonitor expression language…
CVE-2020-7195iccselectrulesiccselectrules expression language injection…

52 records, read from the index as it stood on 2026-09-20. Every row opens the record it names, and every value on that record opens its own receipt.

Everything on this page is free. Public data. Withholding it protects nothing.