VYPR

Integrated Lights-Out 5

by HPE

CVEs (35)

  • CVE-2022-28640HigSep 20, 2022
    risk 0.57cvss 8.8epss 0.01

    A potential local adjacent arbitrary code execution vulnerability that could potentially lead to a loss of confidentiality, integrity, and availability was discovered in HPE Integrated Lights-Out 5 (iLO 5) in Version: 2.71. Hewlett Packard Enterprise has provided updated…

  • CVE-2022-28639HigSep 20, 2022
    risk 0.57cvss 8.8epss 0.01

    A remote potential adjacent denial of service (DoS) and potential adjacent arbitrary code execution vulnerability that could potentially lead to a loss of confidentiality, integrity, and availability were discovered in HPE Integrated Lights-Out 5 (iLO 5) in Version: 2.71.…

  • CVE-2022-28632HigAug 12, 2022
    risk 0.57cvss 8.8epss 0.00

    A potential arbitrary code execution and a denial of service (DoS) vulnerability within an isolated process were discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s): Prior to 2.71. An unprivileged user could exploit this vulnerability in an adjacent network to…

  • CVE-2022-28631HigAug 12, 2022
    risk 0.57cvss 8.8epss 0.00

    A potential arbitrary code execution and a denial of service (DoS) vulnerability within an isolated process were discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s): Prior to 2.71. An unprivileged user could exploit this vulnerability in an adjacent network to…

  • CVE-2022-28628HigAug 12, 2022
    risk 0.55cvss 8.4epss 0.00

    A local arbitrary code execution vulnerability was discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s): Prior to 2.71. An unprivileged user could locally exploit this vulnerability to execute arbitrary code resulting in a complete loss of confidentiality,…

  • CVE-2022-28627HigAug 12, 2022
    risk 0.55cvss 8.4epss 0.00

    A local arbitrary code execution vulnerability was discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s): Prior to 2.71. An unprivileged user could locally exploit this vulnerability to execute arbitrary code resulting in a complete loss of confidentiality,…

  • CVE-2023-28083HigMar 22, 2023
    risk 0.54cvss 8.3epss 0.00

    A remote Cross-site Scripting vulnerability was discovered in HPE Integrated Lights-Out 6 (iLO 6), Integrated Lights-Out 5 (iLO 5) and Integrated Lights-Out 4 (iLO 4). HPE has provided software updates to resolve this vulnerability in HPE Integrated Lights-Out.

  • CVE-2019-11982HigJun 5, 2019
    risk 0.54cvss 8.3epss 0.02

    A remote cross site scripting vulnerability was identified in HPE Integrated Lights-Out 4 (iLO 4) earlier than v2.61b for Gen9 servers and Integrated Lights-Out 5 (iLO 5) for Gen10 Servers earlier than version v1.39.

  • CVE-2022-28638HigSep 20, 2022
    risk 0.51cvss 7.8epss 0.00

    An isolated local disclosure of information and potential isolated local arbitrary code execution vulnerability that could potentially lead to a loss of confidentiality, integrity, and availability were discovered in HPE Integrated Lights-Out 5 (iLO 5) in Version: 2.71. Hewlett…

  • CVE-2022-28637HigSep 20, 2022
    risk 0.51cvss 7.8epss 0.00

    A local Denial of Service (DoS) and local arbitrary code execution vulnerability that could potentially lead to a loss of confidentiality, integrity, and availability were discovered in HPE Integrated Lights-Out 5 (iLO 5) in Version: 2.71. Hewlett Packard Enterprise has provided…

  • CVE-2022-28629HigAug 12, 2022
    risk 0.51cvss 7.8epss 0.00

    A local arbitrary code execution vulnerability was discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s): Prior to 2.71. A low privileged user could locally exploit this vulnerability to execute arbitrary code resulting in a complete loss of confidentiality,…

  • CVE-2023-50272HigDec 19, 2023
    risk 0.49cvss 7.5epss 0.01

    A potential security vulnerability has been identified in HPE Integrated Lights-Out 5 (iLO 5) and Integrated Lights-Out 6 (iLO 6). The vulnerability could be remotely exploited to allow authentication bypass.

  • CVE-2022-28636HigAug 12, 2022
    risk 0.48cvss 7.4epss 0.00

    A potential local arbitrary code execution and a local denial of service (DoS) vulnerability within an isolated process were discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s): Prior to 2.71. An unprivileged user could locally exploit this vulnerability to…

  • CVE-2022-28635HigAug 12, 2022
    risk 0.48cvss 7.4epss 0.00

    A potential local arbitrary code execution and a local denial of service (DoS) vulnerability within an isolated process were discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s): Prior to 2.71. An unprivileged user could locally exploit this vulnerability to…

  • CVE-2022-28633HigAug 12, 2022
    risk 0.47cvss 7.3epss 0.00

    A local disclosure of sensitive information and a local unauthorized data modification vulnerability were discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s): Prior to 2.71. An unprivileged user could locally exploit this vulnerability to read and write to the…

  • CVE-2022-28630HigAug 12, 2022
    risk 0.47cvss 7.3epss 0.00

    A local arbitrary code execution vulnerability was discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s): Prior to 2.71. An unprivileged user could locally exploit this vulnerability to execute arbitrary code resulting in a complete loss of confidentiality and…

  • CVE-2018-7078HigAug 6, 2018
    risk 0.47cvss 7.2epss 0.07

    A remote code execution was identified in HPE Integrated Lights-Out 4 (iLO 4) earlier than version v2.60 and HPE Integrated Lights-Out 5 (iLO 5) earlier than version v1.30.

  • CVE-2019-11983HigJun 5, 2019
    risk 0.46cvss 7.0epss 0.01

    A remote buffer overflow vulnerability was identified in HPE Integrated Lights-Out 4 (iLO 4) earlier than v2.61b for Gen9 servers and Integrated Lights-Out 5 (iLO 5) for Gen10 Servers earlier than version v1.39.

  • CVE-2023-30911MedOct 18, 2023
    risk 0.44cvss 6.8epss 0.01

    HPE Integrated Lights-Out 5, and Integrated Lights-Out 6 using iLOrest may cause denial of service.

  • CVE-2022-28634MedAug 12, 2022
    risk 0.44cvss 6.7epss 0.00

    A local arbitrary code execution vulnerability was discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s): Prior to 2.71. A highly privileged user could locally exploit this vulnerability to execute arbitrary code resulting in a complete loss of confidentiality,…

Page 1 of 2