CVE-2023-50272
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Dec 19, 2023
Updated: Dec 28, 2023
Summary
CVE-2023-50272 is a newly discovered vulnerability affecting HPE Integrated Lights-Out 5 (iLO 5) and Integrated Lights-Out 6 (iLO 6) systems. This issue permits unauthorized authentication bypass, posing a potential security risk. An attacker could exploit this vulnerability remotely, bypassing authentication mechanisms and gaining unauthorized access to the affected systems. HPE strongly recommends users to apply the available patches to mitigate this vulnerability and secure their iLO-enabled servers.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Hewlett Packard Enterprise Co.