vulnerability

HP iLO: CVE-2017-8979: Remote Authentication Bypass, Code Execution, Denial of Service (DoS)

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:P)
Published
Feb 15, 2018
Added
Jul 6, 2018
Modified
Mar 30, 2026

Description

Security vulnerabilities in the HPE Integrated Lights-Out 2 (iLO 2) firmware could be exploited remotely to allow authentication bypass, code execution, and denial of service.

Solution

hp-ilo-2-upgrade-2_31
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.