MEDIUM · 6.5

CVE-2017-12543

A remote disclosure of information vulnerability in Moonshot Remote Console Administrator Prior to 2.50, iLO4 prior to v2.53, iLO3 prior to v1.89 and iLO2 prior to v2.30 was found.

Vulnerability Description

A remote disclosure of information vulnerability in Moonshot Remote Console Administrator Prior to 2.50, iLO4 prior to v2.53, iLO3 prior to v1.89 and iLO2 prior to v2.30 was found.

CVSS Score

6.5

MEDIUM

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
HpMoonshot Remote Console Administrator< 2.50
HpIntegrated Lights-Out 2 Firmware< 2.30
HpIntegrated Lights-Out 3 Firmware< 1.89
HpIntegrated Lights-Out 4 Firmware< 2.53
HpIntegrated Lights-Out-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2017-12543?

CVE-2017-12543 is a vulnerability with a CVSS score of 6.5 (MEDIUM). A remote disclosure of information vulnerability in Moonshot Remote Console Administrator Prior to 2.50, iLO4 prior to v2.53, iLO3 prior to v1.89 and iLO2 prior to v2.30 was found.

How severe is CVE-2017-12543?

CVE-2017-12543 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2017-12543?

Check the references section above for vendor advisories and patch information. Affected products include: Hp Moonshot Remote Console Administrator, Hp Integrated Lights-Out 2 Firmware, Hp Integrated Lights-Out 3 Firmware, Hp Integrated Lights-Out 4 Firmware, Hp Integrated Lights-Out.