First published: Thu Jan 29 2009(Updated: )
Unspecified vulnerability in the Embedded Lights Out Manager (ELOM) on the Sun Fire X2100 M2 and X2200 M2 x86 platforms before SP/BMC firmware 3.20 allows remote attackers to obtain privileged ELOM login access or execute arbitrary Service Processor (SP) commands via unknown vectors, aka Bug ID 6633175, a different vulnerability than CVE-2007-5717.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sun Fire X2100 M2 | <=3.19 | |
Sun Fire X2200 M2 | <=2.19 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-0344 is considered a high-severity vulnerability due to the potential for remote attackers to gain privileged access.
To fix CVE-2009-0344, update the firmware of the Embedded Lights Out Manager to version 3.20 or later.
CVE-2009-0344 affects the Sun Fire X2100 M2 and X2200 M2 x86 platforms running firmware versions prior to 3.20 and 2.19, respectively.
Attackers exploiting CVE-2009-0344 can obtain privileged ELOM login access or execute arbitrary Service Processor commands.
While specific exploit techniques for CVE-2009-0344 may not be publicly disclosed, the nature of the vulnerability suggests it can be exploited remotely.