CVE-2018-2566 is a vulnerability in the Integrated Lights Out Manager (ILOM) component of Oracle Sun Systems Products Suite, affecting versions 3.x and 4.x. This vulnerability allows a low-privileged attacker with network access via TLS to compromise ILOM, potentially leading to unauthorized data modification or access to all ILOM accessible data. While difficult to exploit and requiring human interaction, it carries a CVSS 3.0 Base Score of 7.7 (High) due to significant confidentiality and integrity impacts. There is no known public exploit code, active exploitation, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
3.0.0CPE matchmatch criteria | cpe:2.3:o:oracle:integrated_lights_out_manager_firmware:3.0.0:*:*:*:*:*:*:* | ||
3.0.3CPE matchmatch criteria | cpe:2.3:o:oracle:integrated_lights_out_manager_firmware:3.0.3:*:*:*:*:*:*:* | ||
3.0.4CPE matchmatch criteria | cpe:2.3:o:oracle:integrated_lights_out_manager_firmware:3.0.4:*:*:*:*:*:*:* | ||
3.0.6CPE matchmatch criteria | cpe:2.3:o:oracle:integrated_lights_out_manager_firmware:3.0.6:*:*:*:*:*:*:* | ||
3.0.8CPE matchmatch criteria | cpe:2.3:o:oracle:integrated_lights_out_manager_firmware:3.0.8:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.