PT-2013-5239 · Hewlett Packard · Hp Integrated Lights-Out 3+2

Published

2013-11-05

·

Updated

2023-02-28

·

CVE-2013-4843

CVSS v2.0

6.8

Medium

VectorAV:N/AC:L/Au:S/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions HP Integrated Lights-Out 4 (iLO4) versions prior to 1.32 HP Integrated Lights-Out 3 (iLO3) (affected versions not specified)
Description The issue allows remote authenticated users to obtain sensitive information via unknown vectors. It could also result in Cross Site Scripting (XSS) or unauthorized disclosure of information.
Recommendations For HP Integrated Lights-Out 4 (iLO4) versions prior to 1.32, update the firmware to version 1.32 or later. For HP Integrated Lights-Out 3 (iLO3), at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2013-4843

Affected Products

Hp Integrated Lights-Out 3
Hpe Integrated Lights-Out 4
Hpe Ilo