CVE-2017-8979: HP Integrated Lights-Out 2 Firmware

Critical severity, CVSS 9.8. EPSS: 4.8% chance of exploitation in the next 30 days.

Security vulnerabilities in the HPE Integrated Lights-Out 2 (iLO 2) firmware could be exploited remotely to allow authentication bypass, code execution, and denial of service.

Affected products

  • HP Integrated Lights-Out 2 Firmware: version 2.29 only

Published 2018-02-15. Last modified 2026-06-17.