Description
An authentication bypass vulnerability was identified in SMM/SMM2 and FPC that could allow an authenticated user to execute certain IPMI calls that could lead to exposure of limited system information.
No analysis available yet.
Remediation
Vendor Solution
Update SMM/SMM2 or FPC to the version (or newer) indicated for your model in the advisory: https://support.lenovo.com/us/en/product_security/LEN-140420
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-54697 | An authentication bypass vulnerability was identified in SMM/SMM2 and FPC that could allow an authenticated user to execute certain IPMI calls that could lead to exposure of limited system information. |
References
| Link | Providers |
|---|---|
| https://support.lenovo.com/us/en/product_security/LEN-140420 |
|
History
No history.
Subscriptions
No data.
Status: PUBLISHED
Assigner: lenovo
Published:
Updated: 2024-08-02T07:38:00.772Z
Reserved: 2023-09-08T19:23:06.855Z
Link: CVE-2023-4857
Updated: 2024-08-02T07:38:00.772Z
Status : Deferred
Published: 2024-04-15T18:15:09.640
Modified: 2026-04-15T00:35:42.020
Link: CVE-2023-4857
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD