← Vulnerability feed

Vulnerability record · CVE-2017-12542 · published 15 February 2018

CVE-2017-12542: HPE iLO 4 authentication bypass and remote code execution

Hp · Integrated Lights Out 4 Firmware

HPE Integrated Lights-Out 4 (iLO 4) firmware before version 2.53 contains an authentication bypass that also allows execution of code. Because iLO is the out-of-band management interface for servers, a bypass there gives an unauthenticated network attacker control over the managed host.

10.0 CVSS 3.0 Critical EPSS 99% · top 0.1%
10.0CVSS 3.0 base score, v2 10.0
99%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
8References, 2 tagged exploit
17 Jun 2026Last modified by NVD

Description

A authentication bypass and execution of code vulnerability in HPE Integrated Lights-out 4 (iLO 4) version prior to 2.53 was found.

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Automated analysis

Generated by VULONE's analysis model from the NVD record, CISA KEV and EPSS data on 17 September 2026. Confidence: medium.

critical priorityCVSS 10.0 with network-reachable, unauthenticated code execution on server management controllers and a public exploit makes this a top remediation priority.

What it is

HPE Integrated Lights-Out 4 (iLO 4) firmware before version 2.53 contains an authentication bypass that also allows execution of code. Because iLO is the out-of-band management interface for servers, a bypass there gives an unauthenticated network attacker control over the managed host.

Impact

An attacker gains unauthenticated access to the iLO management interface and can execute code on it, which typically means control of the managed server's power, virtual media and console.

Attack surface

Reachable over the network via the iLO management interface (CVSS vector AV:N/PR:N/UI:N), requiring no authentication and no user interaction. The description does not specify the exact endpoint or protocol used.

Exploitation

A public exploit exists (Exploit-DB 44005) and EPSS is very high at 0.99294 (99.9th percentile), though the CVE is not listed in CISA KEV. No ransomware group use is documented in the record.

What to do

  • Upgrade iLO 4 firmware to version 2.53 or later per the HPE advisory.
  • Isolate iLO management interfaces on a dedicated management VLAN with no internet exposure.
  • Restrict access to iLO with firewall rules and allowlists limited to trusted admin hosts.
  • Change default iLO credentials and disable unused management services.
  • Monitor the HPE advisory and vendor channels for any follow-up fixes.

Detection

  • Alert on unexpected or anomalous requests to iLO management endpoints from non-admin source addresses.
  • Audit iLO logs for authentication bypass patterns, new admin accounts, or configuration changes.
  • Monitor for iLO firmware version below 2.53 across the server fleet.
  • Watch for outbound connections or new processes originating from iLO management addresses.

This assessment is produced automatically and is not human-reviewed. Verify against the vendor advisory before acting on it.

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2017-12542 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2014-7876Hp integrated lights-out 2 firmware vulnerabilityUnspecified vulnerability in HP Integrated Lights-Out (iLO) firmware 2 before 2.27 and 4 before 2.03 and iLO Chassis Management (CM) firmware before …EPSS 13%10.0CVE-2013-2338Hp integrated lights-out 3 firmware vulnerabilityUnspecified vulnerability on HP Integrated Lights-Out 3 (aka iLO3) cards with firmware before 1.57 and 4 (aka iLO4) cards with firmware before 1.22, …EPSS 10%9.8CVE-2016-4375Hp integrated lights-out 3 firmware vulnerabilityMultiple unspecified vulnerabilities in HPE Integrated Lights-Out 3 (aka iLO 3) firmware before 1.88, Integrated Lights-Out 4 (aka iLO 4) firmware be…EPSS 3.0%9.3CVE-2012-3271Hp integrated lights-out 3 firmware vulnerabilityUnspecified vulnerability on the HP Integrated Lights-Out 3 (aka iLO3) with firmware before 1.50 and Integrated Lights-Out 4 (aka iLO4) with firmware…EPSS 5.1%8.6CVE-2018-7093Hp integrated lights-out 3 firmware vulnerabilityA security vulnerability in HPE Integrated Lights-Out 3 prior to v1.90, iLO 4 prior to v2.60, iLO 5 prior to v1.30, Moonshot Chassis Manager firmware…EPSS 3.5%8.3CVE-2019-11982Hp integrated lights-out 5 firmware cross-site scripting vulnerabilityA remote cross site scripting vulnerability was identified in HPE Integrated Lights-Out 4 (iLO 4) earlier than v2.61b for Gen9 servers and Integrated…EPSS 2.1%7.5CVE-2018-7101Hp integrated lights-out 4 firmware vulnerabilityA potential remote denial of service security vulnerability has been identified in HPE Integrated Lights Out 4 prior to v2.60 and iLO 5 for Gen 10 se…EPSS 7.1%7.2CVE-2018-7105Hp integrated lights-out 5 firmware vulnerabilityA security vulnerability in HPE Integrated Lights-Out 5 (iLO 5) for HPE Gen10 Servers prior to v1.35, HPE Integrated Lights-Out 4 (iLO 4) prior to v2…EPSS 4.1%

Source: NIST National Vulnerability Database (record CVE-2017-12542), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.