CVE-2018-18202

The QLogic 4Gb Fibre Channel 5.5.2.6.0 and 4/8Gb SAN 7.10.1.20.0 modules for IBM BladeCenter have an undocumented support account with a support password, an undocumented diags account with a diags password, and an undocumented prom account with a prom password.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:ibm:qlogic_4_gb_fibre_channel_expansion_card_firmware:5.5.2.6.0:*:*:*:*:*:*:*
cpe:2.3:h:ibm:qlogic_4_gb_fibre_channel_expansion_card:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:ibm:qlogic_20-port_4\/8_gb_san_switch_module_firmware:7.10.1.20.0:*:*:*:*:*:*:*
cpe:2.3:h:ibm:qlogic_20-port_4\/8_gb_san_switch_module:-:*:*:*:*:*:*:*

History

21 Nov 2024, 03:55

Type Values Removed Values Added
References () http://misteralfa-hack.blogspot.com/2018/10/ibm-bladecenter-qlogic-4g-fibre-channel.html - Exploit, Third Party Advisory () http://misteralfa-hack.blogspot.com/2018/10/ibm-bladecenter-qlogic-4g-fibre-channel.html - Exploit, Third Party Advisory

Information

Published : 2018-10-10 01:29

Updated : 2024-11-21 03:55


NVD link : CVE-2018-18202

Mitre link : CVE-2018-18202

CVE.ORG link : CVE-2018-18202


JSON object : View

Products Affected

ibm

  • qlogic_4_gb_fibre_channel_expansion_card_firmware
  • qlogic_20-port_4\/8_gb_san_switch_module_firmware
  • qlogic_4_gb_fibre_channel_expansion_card
  • qlogic_20-port_4\/8_gb_san_switch_module