The iBMC (Intelligent Baseboard Management Controller) of some Huawei servers have a JSON injection vulnerability due to insufficient input validation. An authenticated, remote attacker can launch a JSON injection to modify the password of administrator. Successful exploit may allow attackers to obtain the management privilege of the system.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: huawei

Published: 2018-06-01T14:00:00

Updated: 2018-06-01T13:57:02

Reserved: 2018-03-09T00:00:00


Link: CVE-2018-7951

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-06-01T14:29:00.877

Modified: 2020-08-24T17:37:01.140


Link: CVE-2018-7951

JSON object: View

cve-icon Redhat Information

No data.

CWE