Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-5633

Опубликовано: 13 янв. 2021
Источник: nvd
CVSS3: 9.8
CVSS2: 9
EPSS Низкий

Описание

Multiple NEC products (Express5800/T110j, Express5800/T110j-S, Express5800/T110j (2nd-Gen), Express5800/T110j-S (2nd-Gen), iStorage NS100Ti, and Express5800/GT110j) where Baseboard Management Controller (BMC) firmware Rev1.09 and earlier is applied allows remote attackers to bypass authentication and then obtain/modify BMC setting information, obtain monitoring information, or reboot/shut down the vulnerable product via unspecified vectors.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:nec:baseboard_management_controller:*:*:*:*:*:*:*:*
Версия до 1.09 (включая)

Одно из

cpe:2.3:h:nec:express5800\/gt110j:-:*:*:*:*:*:*:*
cpe:2.3:h:nec:express5800\/t110j:-:*:*:*:*:*:*:*
cpe:2.3:h:nec:express5800\/t110j-s:-:*:*:*:*:*:*:*
cpe:2.3:h:nec:express5800\/t110j-s_\(2nd-gen\):-:*:*:*:*:*:*:*
cpe:2.3:h:nec:express5800\/t110j_\(2nd-gen\):-:*:*:*:*:*:*:*
cpe:2.3:h:nec:istorage_ns100ti:-:*:*:*:*:*:*:*

EPSS

Процентиль: 76%
0.00979
Низкий

9.8 Critical

CVSS3

9 Critical

CVSS2

Дефекты

CWE-287

Связанные уязвимости

github
больше 3 лет назад

Multiple NEC products (Express5800/T110j, Express5800/T110j-S, Express5800/T110j (2nd-Gen), Express5800/T110j-S (2nd-Gen), iStorage NS100Ti, and Express5800/GT110j) where Baseboard Management Controller (BMC) firmware Rev1.09 and earlier is applied allows remote attackers to bypass authentication and then obtain/modify BMC setting information, obtain monitoring information, or reboot/shut down the vulnerable product via unspecified vectors.

EPSS

Процентиль: 76%
0.00979
Низкий

9.8 Critical

CVSS3

9 Critical

CVSS2

Дефекты

CWE-287