CVE-2023-28083
5.4
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: NVD
Description
A remote Cross-site Scripting vulnerability was discovered in HPE Integrated Lights-Out 6 (iLO 6), Integrated Lights-Out 5 (iLO 5) and Integrated Lights-Out 4 (iLO 4). HPE has provided software updates to resolve this vulnerability in HPE Integrated Lights-Out.
Affected (3)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.82 |
| Running on/with | Platform Versions |
|---|---|
Hpe Apollo 4200 Gen9 Server | All versions |
Hpe Apollo R2000 Chassis | All versions |
Hpe Proliant Bl420c Gen8 Server | All versions |
Hpe Proliant Bl460c Gen8 Server Blade | All versions |
Hpe Proliant Bl460c Gen9 Server Blade | All versions |
Hpe Proliant Bl465c Gen8 Server Blade | All versions |
Hpe Proliant Bl660c Gen8 Server Blade | All versions |
Hpe Proliant Bl660c Gen9 Server | All versions |
Hpe Proliant Dl120 Gen9 Server | All versions |
Hpe Proliant Dl160 Gen8 Server | All versions |
Hpe Proliant Dl160 Gen9 Server | All versions |
Hpe Proliant Dl180 Gen9 Server | All versions |
Hpe Proliant Dl20 Gen9 Server | All versions |
Hpe Proliant Dl320e Gen8 Server | All versions |
Hpe Proliant Dl320e Gen8 V2 Server | All versions |
Hpe Proliant Dl360 Gen9 Server | All versions |
Hpe Proliant Dl360e Gen8 Server | All versions |
Hpe Proliant Dl360p Gen8 Server | All versions |
Hpe Proliant Dl380 Gen9 Server | All versions |
Hpe Proliant Dl380e Gen8 Server | All versions |
Hpe Proliant Dl380p Gen8 Server | All versions |
Hpe Proliant Dl385p Gen8 (amd) | All versions |
Hpe Proliant Dl560 Gen8 Server | All versions |
Hpe Proliant Dl560 Gen9 Server | All versions |
Hpe Proliant Dl580 Gen8 Server | All versions |
Hpe Proliant Dl580 Gen9 Server | All versions |
Hpe Proliant Dl60 Gen9 Server | All versions |
Hpe Proliant Dl80 Gen9 Server | All versions |
Hpe Proliant Microserver Gen8 | All versions |
Hpe Proliant Ml110 Gen9 Server | All versions |
Hpe Proliant Ml30 Gen9 Server | All versions |
Hpe Proliant Ml310e Gen8 Server | All versions |
Hpe Proliant Ml310e Gen8 V2 Server | All versions |
Hpe Proliant Ml350 Gen9 Server | All versions |
Hpe Proliant Ml350e Gen8 Server | All versions |
Hpe Proliant Ml350e Gen8 V2 Server | All versions |
Hpe Proliant Ml350p Gen8 Server | All versions |
Hpe Proliant Sl210t Gen8 Server | All versions |
Hpe Proliant Sl230s Gen8 Server | All versions |
Hpe Proliant Sl250s Gen8 Server | All versions |
Hpe Proliant Sl270s Gen8 Se Server | All versions |
Hpe Proliant Sl270s Gen8 Server | All versions |
Hpe Proliant Ws460c Gen8 Graphics Server Blade | All versions |
Hpe Proliant Ws460c Gen9 Graphics Server Blade | All versions |
Hpe Proliant Xl170r Gen9 Server | All versions |
Hpe Proliant Xl190r Gen9 Server | All versions |
Hpe Proliant Xl220a Gen8 V2 Server | All versions |
Hpe Proliant Xl230a Gen9 Server | All versions |
Hpe Proliant Xl230b Gen9 Server | All versions |
Hpe Proliant Xl250a Gen9 Server | All versions |
Hpe Proliant Xl270d Gen9 Special Server | All versions |
Hpe Proliant Xl450 Gen9 Server | All versions |
Hpe Proliant Xl730f Gen9 Server | All versions |
Hpe Proliant Xl740f Gen9 Server | All versions |
Hpe Proliant Xl750f Gen9 Server | All versions |
Hpe Storeeasy 1430 Storage | All versions |
Hpe Storeeasy 1440 Storage | All versions |
Hpe Storeeasy 1450 Storage | All versions |
Hpe Storeeasy 1530 Storage | All versions |
Hpe Storeeasy 1540 Storage | All versions |
Hpe Storeeasy 1550 Storage | All versions |
Hpe Storeeasy 1630 Storage | All versions |
Hpe Storeeasy 1640 Storage | All versions |
Hpe Storeeasy 1650 Expanded Storage | All versions |
Hpe Storeeasy 1650 Storage | All versions |
Hpe Storeeasy 1830 Storage | All versions |
Hpe Storeeasy 1840 Storage | All versions |
Hpe Storeeasy 1850 Storage | All versions |
Hpe Storeeasy 3830 Gateway Storage | All versions |
Hpe Storeeasy 3830 Gateway Storage Blade | All versions |
Hpe Storeeasy 3840 Gateway Storage | All versions |
Hpe Storeeasy 3840 Gateway Storage Blade | All versions |
Hpe Storeeasy 3850 Gateway Single Node Upgrade | All versions |
Hpe Storeeasy 3850 Gateway Storage | All versions |
Hpe Storeeasy 3850 Gateway Storage Blade | All versions |
Hpe Storevirtual 3000 File Controller | All versions |
Hpe Synergy 480 Gen9 Compute Module | All versions |
Hpe Synergy 620 Gen9 Compute Module | All versions |
Hpe Synergy 660 Gen9 Compute Module | All versions |
Hpe Synergy 680 Gen9 Compute Module | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.78 |
| Running on/with | Platform Versions |
|---|---|
Hpe Apollo 4200 Gen10 Plus System | All versions |
Hpe Apollo 4200 Gen10 Server | All versions |
Hpe Apollo 4510 Gen10 System | All versions |
Hpe Apollo 6500 Gen10 Plus System | All versions |
Hpe Apollo 6500 Gen10 System | All versions |
Hpe Apollo N2600 Gen10 Plus | All versions |
Hpe Apollo N2800 Gen10 Plus | All versions |
Hpe Apollo R2200 Gen10 | All versions |
Hpe Apollo R2600 Gen10 | All versions |
Hpe Apollo R2800 Gen10 | All versions |
Hpe Edgeline E920 Server Blade | All versions |
Hpe Edgeline E920d Server Blade | All versions |
Hpe Edgeline E920t Server Blade | All versions |
Hpe Proliant Bl460c Gen10 Server Blade | All versions |
Hpe Proliant Dl120 Gen10 Server | All versions |
Hpe Proliant Dl160 Gen10 Server | All versions |
Hpe Proliant Dl180 Gen10 Server | All versions |
Hpe Proliant Dl20 Gen10 Plus Server | All versions |
Hpe Proliant Dl20 Gen10 Server | All versions |
Hpe Proliant Dl325 Gen10 Plus Server | All versions |
Hpe Proliant Dl325 Gen10 Server | All versions |
Hpe Proliant Dl345 Gen10 Plus Server | All versions |
Hpe Proliant Dl360 Gen10 Plus Server | All versions |
Hpe Proliant Dl360 Gen10 Server | All versions |
Hpe Proliant Dl365 Gen10 Plus Server | All versions |
Hpe Proliant Dl380 Gen10 Plus Server | All versions |
Hpe Proliant Dl380 Gen10 Server | All versions |
Hpe Proliant Dl385 Gen10 Plus Server | All versions |
Hpe Proliant Dl385 Gen10 Plus V2 Server | All versions |
Hpe Proliant Dl385 Gen10 Server | All versions |
Hpe Proliant Dl560 Gen10 Server | All versions |
Hpe Proliant Dl580 Gen10 Server | All versions |
Hpe Proliant Dx170r Gen10 Server | All versions |
Hpe Proliant Dx190r Gen10 Server | All versions |
Hpe Proliant Dx220n Gen10 Plus Server | All versions |
Hpe Proliant Dx325 Gen10 Plus V2 Server | All versions |
Hpe Proliant Dx360 Gen10 Plus Server | All versions |
Hpe Proliant Dx360 Gen10 Server | All versions |
Hpe Proliant Dx380 Gen10 Plus Server | All versions |
Hpe Proliant Dx380 Gen10 Server | All versions |
Hpe Proliant Dx385 Gen10 Plus Server | All versions |
Hpe Proliant Dx385 Gen10 Plus V2 Server | All versions |
Hpe Proliant Dx4200 Gen10 Server | All versions |
Hpe Proliant Dx560 Gen10 Server | All versions |
Hpe Proliant E910 Server Blade | All versions |
Hpe Proliant E910t Server Blade | All versions |
Hpe Proliant Ml110 Gen10 Server | All versions |
Hpe Proliant Ml30 Gen10 Plus Server | All versions |
Hpe Proliant Ml350 Gen10 Server | All versions |
Hpe Proliant Xl170r Gen10 Server | All versions |
Hpe Proliant Xl190r Gen10 Server | All versions |
Hpe Proliant Xl220n Gen10 Plus Server | All versions |
Hpe Proliant Xl225n Gen10 Plus 1u Node | All versions |
Hpe Proliant Xl230k Gen10 Server | All versions |
Hpe Proliant Xl270d Gen10 Server | All versions |
Hpe Proliant Xl290n Gen10 Plus Server | All versions |
Hpe Proliant Xl450 Gen10 Server | All versions |
Hpe Proliant Xl645d Gen10 Plus Server | All versions |
Hpe Proliant Xl675d Gen10 Plus Server | All versions |
Hpe Storage File Controller | All versions |
Hpe Storage Performance File Controller | All versions |
Hpe Storeeasy 1460 Storage | All versions |
Hpe Storeeasy 1560 Storage | All versions |
Hpe Storeeasy 1660 Expanded Storage | All versions |
Hpe Storeeasy 1660 Performance Storage | All versions |
Hpe Storeeasy 1660 Storage | All versions |
Hpe Storeeasy 1860 Performance Storage | All versions |
Hpe Storeeasy 1860 Storage | All versions |
Hpe Synergy 480 Gen10 Compute Module | All versions |
Hpe Synergy 480 Gen10 Plus Compute Module | All versions |
Hpe Synergy 660 Gen10 Compute Module | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.20 |
| Running on/with | Platform Versions |
|---|---|
Hpe Proliant Dl320 Gen11 Server | All versions |
Hpe Proliant Dl325 Gen11 Server | All versions |
Hpe Proliant Dl345 Gen11 Server | All versions |
Hpe Proliant Dl360 Gen11 Server | All versions |
Hpe Proliant Dl365 Gen11 Server | All versions |
Hpe Proliant Dl380 Gen11 Server | All versions |
Hpe Proliant Dl385 Gen11 Server | All versions |
Hpe Proliant Ml350 Gen11 Server | All versions |
References (2)
Source: security-alert@hpe.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.