← All CVEs

CVE-2013-2338

high · 10

Unspecified vulnerability on HP Integrated Lights-Out 3 (aka iLO3) cards with firmware before 1.57 and 4 (aka iLO4) cards with firmware before 1.22, when Single-Sign-On (SSO) is used, allows remote attackers to execute arbitrary code via unknown vectors.

10
CVSS
10.4%
EPSS (exploit prob.)
96th
EPSS percentile
2013-06-14
Published

AV:N/AC:L/Au:N/C:C/I:C/A:C

Affected products

VendorProductAffected versions
hpintegrated_lights-out_3_firmware<= 1.55
hpintegrated_lights-out_3_firmware1.00
hpintegrated_lights-out_3_firmware1.05
hpintegrated_lights-out_3_firmware1.20
hpintegrated_lights-out_3_firmware1.26
hpintegrated_lights-out_3_firmware1.28
hpintegrated_lights-out_3_firmware1.50
hpintegrated_lights-out_4_firmware<= 1.20
hpintegrated_lights-out_4_firmware1.11
hpintegrated_lights-out_4_firmware1.13

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2013-2338