CVE-2018-7101: HP Integrated Lights-Out 4 Firmware

High severity, CVSS 7.5. EPSS: 7.2% chance of exploitation in the next 30 days.

A potential remote denial of service security vulnerability has been identified in HPE Integrated Lights Out 4 prior to v2.60 and iLO 5 for Gen 10 servers prior to v1.30.

Affected products

  • HP Integrated Lights-Out 4 Firmware: before 2.60 (fixed in 2.60)
  • HP Integrated Lights-Out 5 Firmware: before 1.30 (fixed in 1.30)

Published 2018-09-27. Last modified 2026-06-17.