7.2
CVSSv2

CVE-2018-7113

Published: 03/12/2018 Updated: 24/08/2020
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.6 | Impact Score: 5.9 | Exploitability Score: 0.7
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

A security vulnerability in HPE Integrated Lights-Out 5 (iLO 5) prior to v1.37 could be locally exploited to bypass the security restrictions for firmware updates.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

hp integrated_lights-out_5_firmware

Github Repositories

Subverting your server through its BMC: the HPE iLO4 case Introduction iLO is the server management solution embedded in almost every HPE servers for more than 10 years It provides every feature required by a system administrator to remotely manage a server without having to reach it physically Such features include power management, remote system console, remote CD/DVD imag