Vulnerabilities > CVE-2022-28638 - Unspecified vulnerability in HPE Integrated Lights-Out 5 Firmware 2.63/2.71

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
hpe

Summary

An isolated local disclosure of information and potential isolated local arbitrary code execution vulnerability that could potentially lead to a loss of confidentiality, integrity, and availability were discovered in HPE Integrated Lights-Out 5 (iLO 5) in Version: 2.71. Hewlett Packard Enterprise has provided updated firmware for HPE Integrated Lights-Out 5 (iLO 5) that addresses these security vulnerabilities.

Vulnerable Configurations

Part Description Count
OS
Hpe
3
Hardware
Hp
3
Hardware
Hpe
73