7.5
CVE-2018-7942
- EPSS 0.4%
- Veröffentlicht 24.05.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 04:12:59
- Quelle psirt@huawei.com
- Teams Watchlist Login
- Unerledigt Login
The iBMC (Intelligent Baseboard Management Controller) of some Huawei servers have an authentication bypass vulnerability. An unauthenticated, remote attacker may send some specially crafted messages to the affected products. Due to improper authentication design, successful exploit may cause some information leak.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Huawei ≫ 1288h V5 Firmware Version100r005c00
Huawei ≫ 2288h V5 Firmware Version100r005c00
Huawei ≫ 2488 V5 Firmware Version100r005c00
Huawei ≫ Ch242 V3 Firmware Version100r001c00
Huawei ≫ Ch121l V3 Firmware Version100r001c00
Huawei ≫ Ch121l V5 Firmware Version100r001c00
Huawei ≫ Ch121 V3 Firmware Version100r001c00
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.4% | 0.575 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
|
nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|