CVE-2013-4784: HP Integrated Lights-Out Bmc

High severity, CVSS 10.0. EPSS: 49.6% chance of exploitation in the next 30 days.

The HP Integrated Lights-Out (iLO) BMC implementation allows remote attackers to bypass authentication and execute arbitrary IPMI commands by using cipher suite 0 (aka cipher zero) and an arbitrary password.

Affected products

  • HP Integrated Lights-Out Bmc: any version

Published 2013-07-08. Last modified 2026-06-16.