First published: Mon Feb 08 2021(Updated: )
The Baseboard Management Controller (BMC) firmware in HPE Apollo 70 System prior to version 3.0.14.0 has a path traversal vulnerability in libifc.so webdeletesolvideofile function.
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hpe Baseboard Management Controller | <3.0.14.0 | |
HPE Apollo 70 System |
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf04080en_us
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-26575 is a path traversal vulnerability in the Baseboard Management Controller (BMC) firmware in HPE Apollo 70 System prior to version 3.0.14.0.
CVE-2021-26575 has a severity score of 7.8, classified as high severity.
The affected software includes HPE Baseboard Management Controller version up to 3.0.14.0 and HPE Apollo 70 System (not vulnerable).
To fix CVE-2021-26575, update the Baseboard Management Controller (BMC) firmware to version 3.0.14.0 or later.
More information about CVE-2021-26575 can be found on the HPE support website: https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf04080en_us