The iBMC (Intelligent Baseboard Management Controller) of some Huawei servers have an authentication bypass vulnerability. An unauthenticated, remote attacker may send some specially crafted messages to the affected products. Due to improper authentication design, successful exploit may cause some information leak.
2018-05-24T14:29:00.610
2024-11-21T04:12:59.950
Modified
CVSSv3.0: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:P/I:N/A:N
10.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | huawei | 1288h_v5_firmware | 100r005c00 | Yes |
Hardware | huawei | 1288h_v5 | - | No |
Operating System | huawei | 2288h_v5_firmware | 100r005c00 | Yes |
Hardware | huawei | 2288h_v5 | - | No |
Operating System | huawei | 2488_v5_firmware | 100r005c00 | Yes |
Hardware | huawei | 2488_v5 | - | No |
Operating System | huawei | ch242_v3_firmware | 100r001c00 | Yes |
Hardware | huawei | ch242_v3 | - | No |
Operating System | huawei | ch121l_v3_firmware | 100r001c00 | Yes |
Hardware | huawei | ch121l_v3 | - | No |
Operating System | huawei | ch121l_v5_firmware | 100r001c00 | Yes |
Hardware | huawei | ch121l_v5 | - | No |
Operating System | huawei | ch121_v3_firmware | 100r001c00 | Yes |
Hardware | huawei | ch121_v3 | - | No |