CVE-2017-12542
CRITICAL EXPLOITED IN THE WILD RANSOMWARE NUCLEIHP Integrated Lights-out 4 Firmware < 2.53 - Authentication Bypass
Title source: ruleDescription
A authentication bypass and execution of code vulnerability in HPE Integrated Lights-out 4 (iLO 4) version prior to 2.53 was found.
Exploits (6)
Nuclei Templates (1)
HPE Integrated Lights-out 4 (ILO4) <2.53 - Authentication Bypass
CRITICALby pikpikcu
References (4)
Scores
CVSS v3
10.0
EPSS
0.9425
EPSS Percentile
99.9%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Details
VulnCheck KEV
2021-04-12
InTheWild.io
2022-05-25
Ransomware Use
Confirmed
Status
published
Products (1)
hp/integrated_lights-out_4_firmware
< 2.53
Published
Feb 15, 2018
Tracked Since
Feb 18, 2026