Denial of Service Vulnerability in HPE Integrated Lights-Out 6
CVE-2026-63457

6.5MEDIUM

Key Information:

Vendor

HP (HP)

Vendor
CVE Published:
5 August 2026

What is CVE-2026-63457?

A potential denial of service vulnerability exists in HPE Integrated Lights-Out 6 (iLO 6) versions prior to v1.78, enabling attackers to disrupt system availability. The flaw can be exploited if targeted under specific conditions, potentially leading to loss of access to important remote management features. It is critical for users of affected versions to apply the available updates to fortify their systems against potential attacks.

Affected Version(s)

HPE Integrated Lights-Out 6 (iLO 6) 0 < 1.78

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.