7.5

CVE-2018-7942

The iBMC (Intelligent Baseboard Management Controller) of some Huawei servers have an authentication bypass vulnerability. An unauthenticated, remote attacker may send some specially crafted messages to the affected products. Due to improper authentication design, successful exploit may cause some information leak.

Data is provided by the National Vulnerability Database (NVD)
Huawei1288h V5 Firmware Version100r005c00
   Huawei1288h V5 Version-
Huawei2288h V5 Firmware Version100r005c00
   Huawei2288h V5 Version-
Huawei2488 V5 Firmware Version100r005c00
   Huawei2488 V5 Version-
HuaweiCh242 V3 Firmware Version100r001c00
   HuaweiCh242 V3 Version-
HuaweiCh121l V3 Firmware Version100r001c00
   HuaweiCh121l V3 Version-
HuaweiCh121l V5 Firmware Version100r001c00
   HuaweiCh121l V5 Version-
HuaweiCh121 V3 Firmware Version100r001c00
   HuaweiCh121 V3 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.4% 0.575
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N