PT-2021-7279 · Hewlett Packard · Hpe Ilo Amplifier Pack

Nikita Abramov

·

Published

2021-11-19

·

Updated

2022-03-07

·

CVE-2021-29220

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions HPE iLO Amplifier Pack versions prior to 2.12
Description The issue is related to buffer overflow security vulnerabilities in the HPE iLO Amplifier Pack, which could allow a highly privileged user to remotely execute code, leading to a loss of confidentiality, integrity, and availability. The exploitation of this issue may impact the privacy, integrity, and availability of protected information.
Recommendations For HPE iLO Amplifier Pack versions prior to 2.12, update to version 2.12 or later to resolve the vulnerability. As a temporary workaround, consider restricting access to the HPE iLO Amplifier Pack to minimize the risk of exploitation.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2022-05030
CVE-2021-29220

Affected Products

Hpe Ilo Amplifier Pack