CVE-2013-4805 describes an unspecified authentication bypass vulnerability affecting HP Integrated Lights-Out 3 (iLO3) firmware prior to version 1.60 and iLO4 firmware prior to version 1.30. With a CVSS score of 9.0, this critical vulnerability allows unauthenticated remote attackers to bypass security controls, potentially leading to partial confidentiality, partial integrity, and complete availability impacts. Despite its high severity, there is no public exploit code available (Metasploit, Nuclei, ExploitDB), nor is it listed in the CISA KEV catalog, indicating no active exploitation. Community discussion and media coverage for this CVE are also minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 1.51aCPE matchmatch criteria | cpe:2.3:o:hp:integrated_lights-out_firmware:*:*:*:*:*:*:*:* | ||
1.10CPE matchmatch criteria | cpe:2.3:o:hp:integrated_lights-out_firmware:1.10:*:*:*:*:*:*:* | ||
1.15CPE matchmatch criteria | cpe:2.3:o:hp:integrated_lights-out_firmware:1.15:*:*:*:*:*:*:* | ||
1.15aCPE matchmatch criteria | cpe:2.3:o:hp:integrated_lights-out_firmware:1.15a:*:*:*:*:*:*:* | ||
1.16aCPE matchmatch criteria | cpe:2.3:o:hp:integrated_lights-out_firmware:1.16a:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.