PT-2021-7279 · Hewlett Packard · Hpe Ilo Amplifier Pack
Nikita Abramov
·
Published
2021-11-19
·
Updated
2022-03-07
·
CVE-2021-29220
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
HPE iLO Amplifier Pack versions prior to 2.12
Description
The issue is related to buffer overflow security vulnerabilities in the HPE iLO Amplifier Pack, which could allow a highly privileged user to remotely execute code, leading to a loss of confidentiality, integrity, and availability. The exploitation of this issue may impact the privacy, integrity, and availability of protected information.
Recommendations
For HPE iLO Amplifier Pack versions prior to 2.12, update to version 2.12 or later to resolve the vulnerability. As a temporary workaround, consider restricting access to the HPE iLO Amplifier Pack to minimize the risk of exploitation.
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Hpe Ilo Amplifier Pack