cbcvebase.
CVE-2018-7942
published 2018-05-24

CVE-2018-7942: The iBMC (Intelligent Baseboard Management Controller) of some Huawei servers have an authentication bypass vulnerability. An unauthenticated, remote attacker…

high7.5CVSS 3.0
AVNACLPRNUINSUCHINAN
The iBMC (Intelligent Baseboard Management Controller) of some Huawei servers have an authentication bypass vulnerability. An unauthenticated, remote attacker may send some specially crafted messages to the affected products. Due to improper authentication design, successful exploit may cause some information leak.

Affected

10 ranges
VendorProductVersion rangeFixed in
huawei1288h_v5_firmware
huawei2288h_v5_firmware
huawei2488_v5_firmware
huaweich121_v3_firmware
huaweich121l_v3_firmware
huaweich121l_v5_firmware
huaweich242_v3_firmware
x.orglibx11>= 0 < 2:1.6.2-1ubuntu2.12:1.6.2-1ubuntu2.1
x.orglibx11>= 0 < 2:1.6.3-1ubuntu2.12:1.6.3-1ubuntu2.1
x.orglibx11>= 0 < 2:1.6.4-3ubuntu0.12:1.6.4-3ubuntu0.1

CVSS provenance

nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
osv9.8CRITICAL