CVE-2016-4375: HP Integrated Lights-Out 3 Firmware
Critical severity, CVSS 9.8. EPSS: 3% chance of exploitation in the next 30 days.
Multiple unspecified vulnerabilities in HPE Integrated Lights-Out 3 (aka iLO 3) firmware before 1.88, Integrated Lights-Out 4 (aka iLO 4) firmware before 2.44, and Integrated Lights-Out 4 (aka iLO 4) mRCA firmware before 2.32 allow remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors.
Affected products
- HP Integrated Lights-Out 3 Firmware: version 1.87 only
- HP Integrated Lights-Out 4 Firmware: version 2.43 only
- HP Integrated Lights-Out 4 Mrca Firmware: version 2.31 only
Published 2016-09-08. Last modified 2026-06-17.