CVE-2022-28640
8.8
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD
Description
A potential local adjacent arbitrary code execution vulnerability that could potentially lead to a loss of confidentiality, integrity, and availability was discovered in HPE Integrated Lights-Out 5 (iLO 5) in Version: 2.71. Hewlett Packard Enterprise has provided updated firmware for HPE Integrated Lights-Out 5 (iLO 5) that addresses this security vulnerability.
Affected (1)
Products: Hpe: Integrated Lights Out 5 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.72 |
| Running on/with | Platform Versions |
|---|---|
Hp Apollo 4200 Gen10 Server | All versions |
Hp Apollo 4500 | All versions |
Hp Apollo R2000 Chassis | All versions |
Hpe Apollo 2000 Gen10 Plus System | All versions |
Hpe Apollo 4200 Gen10 Plus System | All versions |
Hpe Apollo 4510 Gen10 System | All versions |
Hpe Apollo 6500 Gen10 Plus | All versions |
Hpe Apollo N2600 Gen10 Plus | All versions |
Hpe Apollo N2800 Gen10 Plus | All versions |
Hpe Apollo R2600 Gen10 | All versions |
Hpe Apollo R2800 Gen10 | All versions |
Hpe Edgeline E920 Server Blade | All versions |
Hpe Edgeline E920d Server Blade | All versions |
Hpe Edgeline E920t Server Blade | All versions |
Hpe Integrated Lights Out 5 | All versions |
Hpe Proliant Bl460c Gen10 Server Blade | All versions |
Hpe Proliant Dl110 Gen10 Plus Telco Server | All versions |
Hpe Proliant Dl160 Gen10 Server | All versions |
Hpe Proliant Dl180 Gen10 Server | All versions |
Hpe Proliant Dl20 Gen10 Plus Server | All versions |
Hpe Proliant Dl20 Gen10 Server | All versions |
Hpe Proliant Dl325 Gen10 Plus Server | All versions |
Hpe Proliant Dl325 Gen10 Plus V2 Server | All versions |
Hpe Proliant Dl325 Gen10 Server | All versions |
Hpe Proliant Dl345 Gen10 Plus Server | All versions |
Hpe Proliant Dl360 Gen10 Plus Server | All versions |
Hpe Proliant Dl360 Gen10 Server | All versions |
Hpe Proliant Dl365 Gen10 Plus Server | All versions |
Hpe Proliant Dl380 Gen10 Plus Server | All versions |
Hpe Proliant Dl380 Gen10 Server | All versions |
Hpe Proliant Dl385 Gen10 Plus Server | All versions |
Hpe Proliant Dl385 Gen10 Plus V2 Server | All versions |
Hpe Proliant Dl385 Gen10 Server | All versions |
Hpe Proliant Dl560 Gen10 Server | All versions |
Hpe Proliant Dl580 Gen10 Server | All versions |
Hpe Proliant Dx170r Gen10 Server | All versions |
Hpe Proliant Dx190r Gen10 Server | All versions |
Hpe Proliant Dx220n Gen10 Plus Server | All versions |
Hpe Proliant Dx325 Gen10 Plus V2 Server | All versions |
Hpe Proliant Dx360 Gen10 Plus Server | All versions |
Hpe Proliant Dx360 Gen10 Server | All versions |
Hpe Proliant Dx380 Gen10 Plus Server | All versions |
Hpe Proliant Dx380 Gen10 Server | All versions |
Hpe Proliant Dx385 Gen10 Plus Server | All versions |
Hpe Proliant Dx385 Gen10 Plus V2 Server | All versions |
Hpe Proliant Dx4200 Gen10 Server | All versions |
Hpe Proliant Dx560 Gen10 Server | All versions |
Hpe Proliant E910 Server Blade | All versions |
Hpe Proliant E910t Server Blade | All versions |
Hpe Proliant M750 Server Blade | All versions |
Hpe Proliant Microserver Gen10 Plus | All versions |
Hpe Proliant Ml110 Gen10 Server | All versions |
Hpe Proliant Ml30 Gen10 Plus Server | All versions |
Hpe Proliant Ml30 Gen10 Server | All versions |
Hpe Proliant Ml350 Gen10 Server | All versions |
Hpe Proliant Xl170r Gen10 Server | All versions |
Hpe Proliant Xl190r Gen10 Server | All versions |
Hpe Proliant Xl220n Gen10 Plus Server | All versions |
Hpe Proliant Xl225n Gen10 Plus 1u Node | All versions |
Hpe Proliant Xl230k Gen10 Server | All versions |
Hpe Proliant Xl270d Gen10 Server | All versions |
Hpe Proliant Xl290n Gen10 Plus Server | All versions |
Hpe Proliant Xl420 Gen10 Server | All versions |
Hpe Proliant Xl450 Gen10 Server | All versions |
Hpe Proliant Xl645d Gen10 Plus Server | All versions |
Hpe Proliant Xl675d Gen10 Plus Server | All versions |
Hpe Proliant Xl925g Gen10 Plus 1u 4 Node Configure To Order Server | All versions |
Hpe Storage File Controller | All versions |
Hpe Storage Performance File Controller | All versions |
Hpe Storeeasy 1460 Storage | All versions |
Hpe Storeeasy 1560 Storage | All versions |
Hpe Storeeasy 1660 Expanded Storage | All versions |
Hpe Storeeasy 1660 Performance Storage | All versions |
Hpe Storeeasy 1660 Storage | All versions |
Hpe Storeeasy 1860 Performance Storage | All versions |
Hpe Storeeasy 1860 Storage | All versions |
References (2)
Source: security-alert@hpe.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.