cbcvebase.
CVE-2018-7093
published 2018-08-14

CVE-2018-7093: A security vulnerability in HPE Integrated Lights-Out 3 prior to v1.90, iLO 4 prior to v2.60, iLO 5 prior to v1.30, Moonshot Chassis Manager firmware prior to…

PriorityP341high8.6CVSS 3.0
AVNACLPRNUINSCCNINAH
EPSS
3.45%
87.6th percentile
A security vulnerability in HPE Integrated Lights-Out 3 prior to v1.90, iLO 4 prior to v2.60, iLO 5 prior to v1.30, Moonshot Chassis Manager firmware prior to v1.58, and Moonshot Component Pack prior to v2.55 could be remotely exploited to create a denial of service.

Affected

5 ranges
VendorProductVersion rangeFixed in
hpintegrated_lights-out_3_firmware< 1.901.90
hpintegrated_lights-out_4_firmware< 2.602.60
hpintegrated_lights-out_5_firmware< 1.301.30
hpmoonshot_chassis_manager_firmware< 1.581.58
hpmoonshot_component_pack_firmware< 2.552.55

CVSS provenance

nvdv3.08.6HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.