CVE-2018-7105: Critical severity hp integrated lights-out vulnerability
Published Sep 27, 2018
·Updated
A security vulnerability in HPE Integrated Lights-Out 5 (iLO 5) for HPE Gen10 Servers prior to v1.35, HPE Integrated Lights-Out 4 (iLO 4) prior to v2.61, HPE Integrated Lights-Out 3 (iLO 3) prior to v1.90 could be remotely exploited to execute arbitrary code leading to disclosure of information.
Affected Software
5 affected components
HP Integrated Lights-out 5 Firmware<1.35
HP Gen 10 Servers
HP Integrated Lights-Out
HP Integrated Lights-out 3 Firmware<1.90
HP Integrated Lights-out 4 Firmware<2.61
Event History
Sep 27, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-7105?
The severity of CVE-2018-7105 is critical.
2
Which versions of HPE Integrated Lights-Out 5 (iLO 5) are affected by CVE-2018-7105?
HPE Integrated Lights-Out 5 (iLO 5) versions prior to v1.35 are affected by CVE-2018-7105.
3
Which versions of HPE Integrated Lights-Out 4 (iLO 4) are affected by CVE-2018-7105?
HPE Integrated Lights-Out 4 (iLO 4) versions prior to v2.61 are affected by CVE-2018-7105.
4
Which versions of HPE Integrated Lights-Out 3 (iLO 3) are affected by CVE-2018-7105?
HPE Integrated Lights-Out 3 (iLO 3) versions prior to v1.90 are affected by CVE-2018-7105.
5
How can CVE-2018-7105 be exploited?
CVE-2018-7105 can be remotely exploited to execute arbitrary code leading to disclosure of information.