The iBMC (Intelligent Baseboard Management Controller) of some Huawei servers have a privilege escalation vulnerability. A remote attacker may send some specially crafted login messages to the affected products. Due to improper authentication design, successful exploit enables low privileged users to get or modify passwords of highly privileged users.
Advisories
Source ID Title
EUVD EUVD EUVD-2018-19661 The iBMC (Intelligent Baseboard Management Controller) of some Huawei servers have a privilege escalation vulnerability. A remote attacker may send some specially crafted login messages to the affected products. Due to improper authentication design, successful exploit enables low privileged users to get or modify passwords of highly privileged users.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: huawei

Published:

Updated: 2024-08-05T06:37:59.717Z

Reserved: 2018-03-09T00:00:00

Link: CVE-2018-7949

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-06-01T14:29:00.787

Modified: 2024-11-21T04:13:00.580

Link: CVE-2018-7949

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.