First published: Thu Nov 03 2022(Updated: )
Cross Site Scripting vulnerability in Hewlett Packard Enterprise Integrated Lights-Out 5.
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hp Integrated Lights-out 5 Firmware | <2.44 | |
Hp 3par Service Processor | ||
Hp Apollo R2000 Chassis | ||
Hpe Apollo 2000 Gen10 Plus System | ||
Hpe Apollo 4200 Gen10 Server | ||
Hpe Apollo 4510 Gen10 System | ||
Hpe Apollo 6500 Gen10 Plus System | ||
HPE Integrated Lights-Out 5 | ||
Hpe Proliant Bl460c Gen10 Server Blade | ||
Hpe Proliant Dl120 Gen10 Server | ||
Hpe Proliant Dl160 Gen10 Server | ||
Hpe Proliant Dl180 Gen10 Server | ||
Hpe Proliant Dl20 Gen10 Server | ||
Hpe Proliant Dl325 Gen10 Plus Server | ||
Hpe Proliant Dl325 Gen10 Server | ||
Hpe Proliant Dl360 Gen10 Server | ||
Hpe Proliant Dl380 Gen10 Server | ||
Hpe Proliant Dl385 Gen10 Plus Server | ||
Hpe Proliant Dl385 Gen10 Server | ||
Hpe Proliant Dl560 Gen10 Server | ||
Hpe Proliant Dl580 Gen10 Server | ||
Hpe Proliant Dx385 Gen10 Plus Server | ||
Hpe Proliant E910 Server Blade | ||
Hpe Proliant E910t Server Blade | ||
Hpe Proliant M750 Server Blade | ||
Hpe Proliant Microserver Gen10 | ||
HPE ProLiant MicroServer Gen10 Plus | ||
Hpe Proliant Ml110 Gen10 Server | ||
Hpe Proliant Ml30 Gen10 Server | ||
Hpe Proliant Ml350 Gen10 Server | ||
Hpe Proliant Xl170r Gen10 Server | ||
Hpe Proliant Xl190r Gen10 Server | ||
Hpe Proliant Xl220n Gen10 Plus Server | ||
Hpe Proliant Xl230k Gen10 Server | ||
Hpe Proliant Xl270d Gen10 Server | ||
Hpe Proliant Xl290n Gen10 Plus Server | ||
Hpe Proliant Xl450 Gen10 Server | ||
Hpe Proliant Xl645d Gen10 Plus Server | ||
Hpe Proliant Xl675d Gen10 Plus Server | ||
Hpe Storage File Controller | ||
Hpe Storeeasy 1460 Storage | ||
Hpe Storeeasy 1560 Storage | ||
Hpe Storeeasy 1660 Expanded Storage | ||
Hpe Storeeasy 1660 Storage | ||
Hpe Storeeasy 1860 Storage |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-46846 is a Cross Site Scripting vulnerability in Hewlett Packard Enterprise Integrated Lights-Out 5.
Hewlett Packard Enterprise Integrated Lights-Out 5 firmware versions up to 2.44 are affected.
CVE-2021-46846 has a severity rating of 6.1 (medium).
To fix the CVE-2021-46846 vulnerability, update the Hewlett Packard Enterprise Integrated Lights-Out 5 firmware to version 2.44 or higher.
More information about CVE-2021-46846 can be found at the following link: [https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf04133en_us](https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf04133en_us)