CVE-2015-2106: HP Integrated Lights-Out 2 Firmware

Medium severity, CVSS 6.4. EPSS: 3.5% chance of exploitation in the next 30 days.

Unspecified vulnerability in HP Integrated Lights-Out (iLO) firmware 2 before 2.27, 3 before 1.82, and 4 before 2.10 allows remote attackers to bypass intended access restrictions or cause a denial of service via unknown vectors.

Affected products

  • HP Integrated Lights-Out 2 Firmware: up to and including 2.25
  • HP Integrated Lights-Out 3 Firmware: up to and including 1.80
  • HP Integrated Lights-Out 4 Firmware: up to and including 2.03

Published 2015-03-31. Last modified 2026-06-17.