CVE-2018-7941: High severity Huawei Ch121 V3 Firmware vulnerability
Huawei iBMC V200R002C60 have an authentication bypass vulnerability. A remote attacker with low privilege may craft specific messages to upload authentication certificate to the affected products. Due to improper validation of the upload authority, successful exploit may cause privilege elevation.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-7941?
CVE-2018-7941 is classified as a critical vulnerability due to its potential for privilege escalation.
How do I fix CVE-2018-7941?
To fix CVE-2018-7941, update to the latest firmware versions provided by Huawei that address this vulnerability.
What type of attack is possible with CVE-2018-7941?
CVE-2018-7941 allows remote attackers to bypass authentication and potentially gain elevated privileges.
Which Huawei products are affected by CVE-2018-7941?
CVE-2018-7941 affects multiple Huawei iBMC systems, particularly those running specified firmware versions.
What changes in product behavior can be expected due to CVE-2018-7941?
Exploitation of CVE-2018-7941 may allow unauthorized users to upload authentication certificates, leading to unauthorized access.