Lucene search

K
cveHpCVE-2014-7876
HistoryMar 31, 2015 - 10:59 a.m.

CVE-2014-7876

2015-03-3110:59:00
hp
web.nvd.nist.gov
45
cve-2014-7876
hp
ilo firmware
vulnerability
remote attackers
privilege escalation
arbitrary code
denial of service

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.8

Confidence

Low

EPSS

0.07

Percentile

94.0%

Unspecified vulnerability in HP Integrated Lights-Out (iLO) firmware 2 before 2.27 and 4 before 2.03 and iLO Chassis Management (CM) firmware before 1.30 allows remote attackers to gain privileges, execute arbitrary code, or cause a denial of service via unknown vectors.

Affected configurations

Nvd
Node
hpintegrated_lights-out_2_firmwareRange2.25
OR
hpintegrated_lights-out_4_firmwareRange2.01
OR
hpintegrated_lights-out_chassis_management_firmwareRange1.29
VendorProductVersionCPE
hpintegrated_lights-out_2_firmware*cpe:2.3:o:hp:integrated_lights-out_2_firmware:*:*:*:*:*:*:*:*
hpintegrated_lights-out_4_firmware*cpe:2.3:o:hp:integrated_lights-out_4_firmware:*:*:*:*:*:*:*:*
hpintegrated_lights-out_chassis_management_firmware*cpe:2.3:o:hp:integrated_lights-out_chassis_management_firmware:*:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.8

Confidence

Low

EPSS

0.07

Percentile

94.0%