Directory Traversal Vulnerability in HPE iLO Amplifier Pack
CVE-2021-29212
9.8CRITICAL
Summary
A directory traversal vulnerability has been discovered in HPE iLO Amplifier Pack versions 1.80 through 1.95, allowing unauthorized remote access. An attacker could exploit this weakness to execute arbitrary code, which poses significant risks to the confidentiality, integrity, and availability of the iLO Amplifier Pack appliance. This vulnerability emphasizes the need for prompt attention to software updates and security measures to protect vital enterprise systems.
Affected Version(s)
iLO Amplifier Pack Ver 1.80, Ver 1.81, Ver 1.90, and Ver 1.95
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved