CVE-2023-50272

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Dec 19, 2023
Updated: Dec 28, 2023

Summary

CVE-2023-50272 is a newly discovered vulnerability affecting HPE Integrated Lights-Out 5 (iLO 5) and Integrated Lights-Out 6 (iLO 6) systems. This issue permits unauthorized authentication bypass, posing a potential security risk. An attacker could exploit this vulnerability remotely, bypassing authentication mechanisms and gaining unauthorized access to the affected systems. HPE strongly recommends users to apply the available patches to mitigate this vulnerability and secure their iLO-enabled servers.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share