First published: Fri Nov 16 2018(Updated: )
In some Lenovo ThinkServer-branded servers, a command injection vulnerability exists in the BMC firmware download command. This allows a privileged user to download and execute arbitrary code inside the BMC. This can only be exploited by authorized privileged users.
Credit: psirt@lenovo.com
Affected Software | Affected Version | How to fix |
---|---|---|
Lenovo ThinkServer RD340 | <64.00 | |
Lenovo ThinkServer RD340 | ||
Lenovo ThinkServer RD440 | <64.00 | |
Lenovo ThinkServer RD440 | ||
Lenovo ThinkServer RD640 | <64.00 | |
Lenovo ThinkServer RD640 | ||
Lenovo ThinkServer TD340 | <60.00 | |
Lenovo ThinkServer TD340 Firmware |
Update BMC firmware
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-9086 is high with a severity value of 7.2.
The command injection vulnerability in CVE-2018-9086 allows a privileged user to download and execute arbitrary code inside the BMC firmware download command.
Only authorized privileged users can exploit the command injection vulnerability in CVE-2018-9086.
Lenovo ThinkServer RD340, RD440, RD640, and TD340 firmware versions up to exclusive 64.00 are affected by CVE-2018-9086.
To fix the command injection vulnerability in CVE-2018-9086, update the BMC firmware to a version that is not vulnerable.