CVE-2017-3765
10.01.2018, 18:29
In Enterprise Networking Operating System (ENOS) in Lenovo and IBM RackSwitch and BladeCenter products, an authentication bypass known as "HP Backdoor" was discovered during a Lenovo security audit in the serial console, Telnet, SSH, and Web interfaces. This bypass mechanism can be accessed when performing local authentication under specific circumstances. If exploited, admin-level access to the switch is granted.Enginsight
Vendor | Product | Version |
---|---|---|
lenovo | enterprise_network_operating_system | 𝑥 < 8.4.6.0 |
lenovo | enterprise_network_operating_system | 𝑥 < 8.4.6.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration