Huawei iBMC V200R002C60 have an authentication bypass vulnerability. A remote attacker with low privilege may craft specific messages to upload authentication certificate to the affected products. Due to improper validation of the upload authority, successful exploit may cause privilege elevation.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-19653 | Huawei iBMC V200R002C60 have an authentication bypass vulnerability. A remote attacker with low privilege may craft specific messages to upload authentication certificate to the affected products. Due to improper validation of the upload authority, successful exploit may cause privilege elevation. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: huawei
Published:
Updated: 2024-08-05T06:37:59.759Z
Reserved: 2018-03-09T00:00:00
Link: CVE-2018-7941
No data.
Status : Modified
Published: 2018-05-10T14:29:00.720
Modified: 2024-11-21T04:12:59.830
Link: CVE-2018-7941
No data.
OpenCVE Enrichment
No data.
EUVD