Huawei iBMC V200R002C60 have an authentication bypass vulnerability. A remote attacker with low privilege may craft specific messages to upload authentication certificate to the affected products. Due to improper validation of the upload authority, successful exploit may cause privilege elevation.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: huawei

Published: 2018-05-10T14:00:00

Updated: 2018-05-10T13:57:01

Reserved: 2018-03-09T00:00:00


Link: CVE-2018-7941

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-05-10T14:29:00.720

Modified: 2018-06-14T18:06:18.233


Link: CVE-2018-7941

JSON object: View

cve-icon Redhat Information

No data.

CWE