
CVE-2018-7112
https://notcve.org/view.php?id=CVE-2018-7112
03 Dec 2018 — The HPE-provided Windows firmware installer for certain Gen9, Gen8, G7,and G6 HPE servers allows local disclosure of privileged information. This issue was resolved in previously provided firmware updates as follows. The HPE Windows firmware installer was updated in the system ROM updates which also addressed the original Spectre/Meltdown set of vulnerabilities. At that time, the Windows firmware installer was also updated in the versions of HPE Integrated Lights-Out 2, 3, and 4 (iLO 2, 3, and 4) listed in ... • http://www.securitytracker.com/id/1041984 •

CVE-2018-7105
https://notcve.org/view.php?id=CVE-2018-7105
27 Sep 2018 — A security vulnerability in HPE Integrated Lights-Out 5 (iLO 5) for HPE Gen10 Servers prior to v1.35, HPE Integrated Lights-Out 4 (iLO 4) prior to v2.61, HPE Integrated Lights-Out 3 (iLO 3) prior to v1.90 could be remotely exploited to execute arbitrary code leading to disclosure of information. Podría explotarse remotamente una vulnerabilidad de seguridad en HPE Integrated Lights-Out 5 (iLO 5) para servidores HPE Gen10 en versiones anteriores a la v1.35, HPE Integrated Lights-Out 4 (iLO 4) en versiones ant... • http://www.securityfocus.com/bid/105425 •

CVE-2018-7093
https://notcve.org/view.php?id=CVE-2018-7093
14 Aug 2018 — A security vulnerability in HPE Integrated Lights-Out 3 prior to v1.90, iLO 4 prior to v2.60, iLO 5 prior to v1.30, Moonshot Chassis Manager firmware prior to v1.58, and Moonshot Component Pack prior to v2.55 could be remotely exploited to create a denial of service. Una vulnerabilidad de seguridad en HPE Integrated Lights-Out 3 en versiones anteriores a la v1.90, iLO 4 en versiones anteriores a la v2.60, iLO 5 en versiones anteriores a la v1.30, Moonshot Chassis Manager con firmware en versiones anteriores... • http://www.securitytracker.com/id/1041435 •

CVE-2017-8987 – HPE Security Bulletin HPESBHF03826 1
https://notcve.org/view.php?id=CVE-2017-8987
27 Feb 2018 — A Unauthenticated Remote Denial of Service vulnerability was identified in HPE Integrated Lights-Out 3 (iLO 3) version v1.88 only. The vulnerability is resolved in iLO3 v1.89 or subsequent versions. Se ha identificado una vulnerabilidad de denegación de servicio (DoS) remota no autenticada en HPE Integrated Lights-Out 3 (iLO 3) solo en la versión v1.88. La vulnerabilidad ha sido resuelta en iLOREST v1.89 o siguientes. A security vulnerability in HPE Integrated Lights-Out 3 (iLO 3) allows remote Denial of Se... • http://www.securitytracker.com/id/1040429 •

CVE-2017-12543 – HPE Security Bulletin HPESBHF03705 4
https://notcve.org/view.php?id=CVE-2017-12543
16 Nov 2017 — A remote disclosure of information vulnerability in Moonshot Remote Console Administrator Prior to 2.50, iLO4 prior to v2.53, iLO3 prior to v1.89 and iLO2 prior to v2.30 was found. Se ha encontrado una vulnerabilidad de divulgación remota de información en Moonshot Remote Console Administrator en versiones anteriores a la 2.50; iLO 4 en versiones anteriores a la v2.53, iLO3 en versiones anteriores a la v1.89 y iLO2 en versiones anteriores a la v2.30. A potential security vulnerability has been identified in... • http://www.securityfocus.com/bid/101944 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •