cbcvebase.
CVE-2024-2659
published 2024-04-15

CVE-2024-2659: A command injection vulnerability was identified in SMM/SMM2 and FPC that could allow an authenticated user with elevated privileges to execute system commands…

high7.2CVSS 3.1
AVNACLPRHUINSUCHIHAH
A command injection vulnerability was identified in SMM/SMM2 and FPC that could allow an authenticated user with elevated privileges to execute system commands when performing a specific administrative function.

Affected

68 ranges· showing 25
VendorProductVersion rangeFixed in
lenovonextscale_n1200_enclosure_firmware< FHET62A-3.50FHET62A-3.50
lenovothinkagile_2u4n_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_cp-cb-10_firmware< TESM40B-1.27TESM40B-1.27
lenovothinkagile_cp-cb-10e_firmware< TESM40B-1.27TESM40B-1.27
lenovothinkagile_hx1021_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_hx1321_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_hx1331_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_hx1521-r_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_hx2321_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_hx2331_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_hx3321_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_hx3331_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_hx3376_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_hx3521-g_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_hx3721_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_hx5521-c_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_hx5521_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_hx5531_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_hx630_v3_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_hx645_v3_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_hx650_v3_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_hx665_v3_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_hx7521_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_hx7531_firmware< tesm40b-1.27tesm40b-1.27
lenovothinkagile_hx7821_firmware< tesm40b-1.27tesm40b-1.27