Vulnerabilities > HP > Integrated Lights OUT 4 Firmware > 2.60

DATE CVE VULNERABILITY TITLE RISK
2019-06-05 CVE-2019-11983 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in HP products
A remote buffer overflow vulnerability was identified in HPE Integrated Lights-Out 4 (iLO 4) earlier than v2.61b for Gen9 servers and Integrated Lights-Out 5 (iLO 5) for Gen10 Servers earlier than version v1.39.
network
high complexity
hp CWE-119
7.0
2019-06-05 CVE-2019-11982 Cross-site Scripting vulnerability in HP products
A remote cross site scripting vulnerability was identified in HPE Integrated Lights-Out 4 (iLO 4) earlier than v2.61b for Gen9 servers and Integrated Lights-Out 5 (iLO 5) for Gen10 Servers earlier than version v1.39.
network
high complexity
hp CWE-79
8.3
2018-09-27 CVE-2018-7105 Unspecified vulnerability in HP products
A security vulnerability in HPE Integrated Lights-Out 5 (iLO 5) for HPE Gen10 Servers prior to v1.35, HPE Integrated Lights-Out 4 (iLO 4) prior to v2.61, HPE Integrated Lights-Out 3 (iLO 3) prior to v1.90 could be remotely exploited to execute arbitrary code leading to disclosure of information.
network
low complexity
hp
7.2