A remote dom xss, crlf injection vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380 Gen9; HPE Integrated Lights-Out 5 (iLO 5) for HPE Gen10 Servers; HPE SimpliVity 380 Gen10; HPE SimpliVity 2600; HPE SimpliVity 380 Gen10 G; HPE SimpliVity 325; HPE SimpliVity 380 Gen10 H version(s): Prior to version 2.78.

Project Subscriptions

Vendors Products
Integrated Lights-out 4 Subscribe
Integrated Lights-out 5 Subscribe
Proliant Bl460c Gen10 Server Blade Subscribe
Proliant Dl120 Gen10 Server Subscribe
Proliant Dl160 Gen10 Server Subscribe
Proliant Dl180 Gen10 Server Subscribe
Proliant Dl20 Gen10 Server Subscribe
Proliant Dl325 Gen10 Plus Server Subscribe
Proliant Dl325 Gen10 Server Subscribe
Proliant Dl360 Gen10 Server Subscribe
Proliant Dl380 Gen10 Server Subscribe
Proliant Dl385 Gen10 Plus Server Subscribe
Proliant Dl385 Gen10 Server Subscribe
Proliant Dl560 Gen10 Server Subscribe
Proliant Dl580 Gen10 Server Subscribe
Proliant Ml110 Gen10 Server Subscribe
Proliant Ml30 Gen10 Server Subscribe
Proliant Ml350 Gen10 Server Subscribe
Proliant Xl170r Gen10 Server Subscribe
Proliant Xl190r Gen10 Server Subscribe
Proliant Xl230k Gen10 Server Subscribe
Proliant Xl270d Gen10 Server Subscribe
Proliant Xl450 Gen10 Server Subscribe
Simplivity 2600 Subscribe
Simplivity 325 Subscribe
Simplivity 380 Gen10 Subscribe
Simplivity 380 Gen10 G Subscribe
Simplivity 380 Gen10 H Subscribe
Simplivity 380 Gen9 Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2021-15848 A remote dom xss, crlf injection vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380 Gen9; HPE Integrated Lights-Out 5 (iLO 5) for HPE Gen10 Servers; HPE SimpliVity 380 Gen10; HPE SimpliVity 2600; HPE SimpliVity 380 Gen10 G; HPE SimpliVity 325; HPE SimpliVity 380 Gen10 H version(s): Prior to version 2.78.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: hpe

Published:

Updated: 2024-08-03T22:02:51.204Z

Reserved: 2021-03-25T00:00:00

Link: CVE-2021-29209

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-05-25T15:15:07.443

Modified: 2024-11-21T06:00:49.823

Link: CVE-2021-29209

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses