cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2016-4375,https://securityvulnerability.io/vulnerability/CVE-2016-4375,,"Multiple unspecified vulnerabilities in HPE Integrated Lights-Out 3 (aka iLO 3) firmware before 1.88, Integrated Lights-Out 4 (aka iLO 4) firmware before 2.44, and Integrated Lights-Out 4 (aka iLO 4) mRCA firmware before 2.32 allow remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors.",HP,"Integrated Lights-out 3 Firmware,Integrated Lights-out 4 Firmware,Integrated Lights-out 4 Mrca Firmware",9.8,CRITICAL,0.005810000002384186,false,,false,false,false,,,false,false,,2016-09-08T16:00:00.000Z,0 CVE-2016-4379,https://securityvulnerability.io/vulnerability/CVE-2016-4379,,"The TLS implementation in HPE Integrated Lights-Out 3 (aka iLO3) firmware before 1.88 does not properly use a MAC protection mechanism in conjunction with CBC padding, which allows remote attackers to obtain sensitive information via a padding-oracle attack, aka a Vaudenay attack.",HP,Integrated Lights-out 3 Firmware,3.7,LOW,0.0026400000788271427,false,,false,false,false,,,false,false,,2016-09-08T16:00:00.000Z,0 CVE-2015-5435,https://securityvulnerability.io/vulnerability/CVE-2015-5435,,Unspecified vulnerability in HP Integrated Lights-Out (iLO) firmware 3 before 1.85 and 4 before 2.22 allows remote authenticated users to cause a denial of service via unknown vectors.,HP,"Integrated Lights-out 3 Firmware,Integrated Lights-out 4 Firmware",,,0.003120000008493662,false,,false,false,false,,,false,false,,2015-09-30T01:59:00.000Z,0 CVE-2015-2106,https://securityvulnerability.io/vulnerability/CVE-2015-2106,,"Unspecified vulnerability in HP Integrated Lights-Out (iLO) firmware 2 before 2.27, 3 before 1.82, and 4 before 2.10 allows remote attackers to bypass intended access restrictions or cause a denial of service via unknown vectors.",HP,"Integrated Lights-out 3 Firmware,Integrated Lights-out 2 Firmware,Integrated Lights-out 4 Firmware",,,0.006039999891072512,false,,false,false,false,,,false,false,,2015-03-31T10:00:00.000Z,0 CVE-2014-7876,https://securityvulnerability.io/vulnerability/CVE-2014-7876,,"Unspecified vulnerability in HP Integrated Lights-Out (iLO) firmware 2 before 2.27 and 4 before 2.03 and iLO Chassis Management (CM) firmware before 1.30 allows remote attackers to gain privileges, execute arbitrary code, or cause a denial of service via unknown vectors.",HP,"Integrated Lights-out 2 Firmware,Integrated Lights-out Chassis Management Firmware,Integrated Lights-out 4 Firmware",,,0.09672000259160995,false,,false,false,false,,,false,false,,2015-03-31T10:00:00.000Z,0 CVE-2014-2601,https://securityvulnerability.io/vulnerability/CVE-2014-2601,,"The server in HP Integrated Lights-Out 2 (aka iLO 2) 2.23 and earlier allows remote attackers to cause a denial of service via crafted HTTPS traffic, as demonstrated by traffic from a CVE-2014-0160 vulnerability-assessment tool.",HP,Integrated Lights-out 2 Firmware,,,0.012590000405907631,false,,false,false,false,,,false,false,,2014-04-24T23:55:00.000Z,0 CVE-2013-4843,https://securityvulnerability.io/vulnerability/CVE-2013-4843,,Unspecified vulnerability in HP Integrated Lights-Out 4 (iLO4) with firmware before 1.32 allows remote authenticated users to obtain sensitive information via unknown vectors.,HP,"Integrated Lights-out Firmware,Integrated Lights-out 4",,,0.001019999966956675,false,,false,false,false,,,false,false,,2013-11-18T03:55:00.000Z,0 CVE-2013-4842,https://securityvulnerability.io/vulnerability/CVE-2013-4842,,Cross-site scripting (XSS) vulnerability in HP Integrated Lights-Out 4 (iLO4) with firmware before 1.32 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.,HP,"Integrated Lights-out Firmware,Integrated Lights-out 4",,,0.0017500000540167093,false,,false,false,false,,,false,false,,2013-11-18T03:55:00.000Z,0 CVE-2013-4805,https://securityvulnerability.io/vulnerability/CVE-2013-4805,,Unspecified vulnerability in HP Integrated Lights-Out 3 (aka iLO3) firmware before 1.60 and 4 (aka iLO4) firmware before 1.30 allows remote attackers to bypass authentication via unknown vectors.,HP,Integrated Lights-out Firmware,,,0.007930000312626362,false,,false,false,false,,,false,false,,2013-08-05T13:22:00.000Z,0 CVE-2013-2338,https://securityvulnerability.io/vulnerability/CVE-2013-2338,,"Unspecified vulnerability on HP Integrated Lights-Out 3 (aka iLO3) cards with firmware before 1.57 and 4 (aka iLO4) cards with firmware before 1.22, when Single-Sign-On (SSO) is used, allows remote attackers to execute arbitrary code via unknown vectors.",HP,Integrated Lights-out 3 Firmware,,,0.022430000826716423,false,,false,false,false,,,false,false,,2013-06-14T19:55:00.000Z,0 CVE-2012-3271,https://securityvulnerability.io/vulnerability/CVE-2012-3271,,Unspecified vulnerability on the HP Integrated Lights-Out 3 (aka iLO3) with firmware before 1.50 and Integrated Lights-Out 4 (aka iLO4) with firmware before 1.13 allows remote attackers to obtain sensitive information via unknown vectors.,HP,Integrated Lights-out 3 Firmware,,,0.024159999564290047,false,,false,false,false,,,false,false,,2012-11-29T11:00:00.000Z,0 CVE-2004-0525,https://securityvulnerability.io/vulnerability/CVE-2004-0525,,HP Integrated Lights-Out (iLO) 1.10 and other versions before 1.55 allows remote attackers to cause a denial of service (hang) by accessing iLO using the TCP/IP reserved port zero.,HP,Integrated Lights-out Firmware,,,0.007249999791383743,false,,false,false,false,,,false,false,,2004-08-06T04:00:00.000Z,0