Security Advisory

CVE-2017-3765

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-01-10 18:00:00
Last updated 2024-09-17 01:10:39
Assigner lenovo
CVSS score not scored
State PUBLISHED

Description

In Enterprise Networking Operating System (ENOS) in Lenovo and IBM RackSwitch and BladeCenter products, an authentication bypass known as "HP Backdoor" was discovered during a Lenovo security audit in the serial console, Telnet, SSH, and Web interfaces. This bypass mechanism can be accessed when performing local authentication under specific circumstances. If exploited, admin-level access to the switch is granted.