CVE-2014-7876: HP Integrated Lights-Out 2 Firmware

High severity, CVSS 10.0. EPSS: 12.8% chance of exploitation in the next 30 days.

Unspecified vulnerability in HP Integrated Lights-Out (iLO) firmware 2 before 2.27 and 4 before 2.03 and iLO Chassis Management (CM) firmware before 1.30 allows remote attackers to gain privileges, execute arbitrary code, or cause a denial of service via unknown vectors.

Affected products

  • HP Integrated Lights-Out 2 Firmware: up to and including 2.25
  • HP Integrated Lights-Out 4 Firmware: up to and including 2.01
  • HP Integrated Lights-Out Chassis Management Firmware: up to and including 1.29

Published 2015-03-31. Last modified 2026-06-17.