8.3

CVE-2019-11983

A remote buffer overflow vulnerability was identified in HPE Integrated Lights-Out 4 (iLO 4) earlier than v2.61b for Gen9 servers and Integrated Lights-Out 5 (iLO 5) for Gen10 Servers earlier than version v1.39.

Data is provided by the National Vulnerability Database (NVD)
HpIntegrated Lights-out 5 Firmware Version <= 1.39
   HpProliant Bl460c Gen10 Version-
   HpProliant Dl120 Gen10 Version-
   HpProliant Dl160 Gen10 Version-
   HpProliant Dl180 Gen10 Version-
   HpProliant Dl20 Gen10 Version-
   HpProliant Dl325 Gen10 Version-
   HpProliant Dl360 Gen10 Version-
   HpProliant Dl380 Gen10 Version-
   HpProliant Dl385 Gen10 Version-
   HpProliant Dl560 Gen10 Version-
   HpProliant Dl580 Gen10 Version-
   HpProliant Microserver Gen10 Version-
   HpProliant Ml110 Gen10 Version-
   HpProliant Ml350 Gen10 Version-
   HpProliant Xl170r Gen10 Version-
   HpProliant Xl190r Gen10 Version-
   HpProliant Xl230k Gen10 Version-
   HpProliant Xl450 Gen10 Version-
HpIntegrated Lights-out 4 Firmware Version <= 2.61b
   HpProliant Bl460c Gen9 Version-
   HpProliant Dl120 Gen9 Version-
   HpProliant Dl180 Gen9 Version-
   HpProliant Dl360 Gen9 Version-
   HpProliant Dl380 Gen9 Version-
   HpProliant Dl580 Gen9 Version-
   HpProliant Ml10 Gen9 Version2
   HpProliant Ml110 Gen9 Version-
   HpProliant Ml150 Gen9 Version-
   HpProliant Ml30 Gen9 Version2
   HpProliant Ml350 Gen9 Version-
   HpProliant Ws460c Gen9 Version-
   HpProliant Xl170r Gen9 Version-
   HpProliant Xl190r Gen9 Version-
   HpProliant Xl230a Gen9 Version-
   HpProliant Xl250a Gen9 Version-
   HpProliant Xl730f Gen9
   HpProliant Xl740f Gen9 Version-
   HpProliant Xl750f Gen9 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.66% 0.687
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7 2.2 4.7
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H
nvd@nist.gov 8.3 8.6 8.5
AV:N/AC:M/Au:N/C:P/I:P/A:C
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.