HIGH · 7.5

CVE-2022-23704

A potential security vulnerability has been identified in Integrated Lights-Out 4 (iLO 4). The vulnerability could allow remote Denial of Service. The vulnerability is resolved in Integrated Lights-Ou...

Vulnerability Description

A potential security vulnerability has been identified in Integrated Lights-Out 4 (iLO 4). The vulnerability could allow remote Denial of Service. The vulnerability is resolved in Integrated Lights-Out 4 (iLO 4) 2.80 and later.

CVSS Score

7.5

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
HpIntegrated Lights-Out 4< 2.80
HpeApollo 4200 Gen9 Server-
HpeProliant Bl420C Gen8 Server-
HpeProliant Bl460C Gen8 Server Blade-
HpeProliant Bl460C Gen9 Server Blade-
HpeProliant Bl465C Gen8 Server Blade-
HpeProliant Bl660C Gen8 Server Blade-
HpeProliant Bl660C Gen9 Server-
HpeProliant Dl120 Gen9 Server-
HpeProliant Dl160 Gen8 Server-
HpeProliant Dl160 Gen9 Server-
HpeProliant Dl180 Gen9 Server-
HpeProliant Dl20 Gen9 Server-
HpeProliant Dl320E Gen8 Server-
HpeProliant Dl320E Gen8 V2 Server-
HpeProliant Dl360 Gen9 Server-
HpeProliant Dl360E Gen8 Server-
HpeProliant Dl360P Gen8 Server-
HpeProliant Dl380 Gen9 Server-
HpeProliant Dl380E Gen8 Server-

References

FAQ

What is CVE-2022-23704?

CVE-2022-23704 is a vulnerability with a CVSS score of 7.5 (HIGH). A potential security vulnerability has been identified in Integrated Lights-Out 4 (iLO 4). The vulnerability could allow remote Denial of Service. The vulnerability is resolved in Integrated Lights-Ou...

How severe is CVE-2022-23704?

CVE-2022-23704 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2022-23704?

Check the references section above for vendor advisories and patch information. Affected products include: Hp Integrated Lights-Out 4, Hpe Apollo 4200 Gen9 Server, Hpe Proliant Bl420C Gen8 Server, Hpe Proliant Bl460C Gen8 Server Blade, Hpe Proliant Bl460C Gen9 Server Blade.