Lenovo and IBM Networking Switches Security Bypass Vulnerability
BID:99995
CVE-2017-3752 |Info
Lenovo and IBM Networking Switches Security Bypass Vulnerability
| Bugtraq ID: | 99995 |
| Class: | Configuration Error |
| CVE: |
CVE-2017-3752 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 27 2017 12:00AM |
| Updated: | Jul 27 2017 12:00AM |
| Credit: | Adi Sosnovich, Orna Grumberg, and Gabi Nakibly. |
| Vulnerable: |
Lenovo RackSwitch G8332 8.4.4.0 Lenovo RackSwitch G8296 8.4.4.0 Lenovo RackSwitch G8272 8.4.4.0 Lenovo RackSwitch G8264CS 8.4.4.0 Lenovo RackSwitch G8264 8.4.4.0 Lenovo RackSwitch G8124E 8.4.4.0 Lenovo RackSwitch G8052 8.4.4.0 Lenovo Flex System SI4091 System Interconnect 8.4.4.0 Lenovo Flex System Fabric EN4093R 10Gb Scalable Switch 8.4.4.0 Lenovo Flex System Fabric CN4093 10Gb Converged Scalable Switch 8.4.4.0 IBM RackSwitch G8332 7.7.26.0 IBM RackSwitch G8316 7.9.20.0 IBM RackSwitch G8264T 7.9.20.0 IBM RackSwitch G8264CS 7.8.17.0 IBM RackSwitch G8052 7.9.20.0 IBM Flex System�?� Fabric EN4093/EN4093R 10Gb Scalable Switch 7.8.17.0 IBM Flex System�?� Fabric CN4093 10Gb Converged Scalable Switch 7.8.17.0 IBM Flex System EN2092 1Gb Ethernet Scalable Switch 7.8.17.0 IBM BladeCenter Layer 2/3 Copper Ethernet Switch 3.11 IBM Bladecenter 1:10G Uplink Ethernet Switch 7.4.17.0 IBM 1G L2-7 SLB switch for Bladecenter 21.25 |
| Not Vulnerable: | |
Exploit / POC
Lenovo and IBM Networking Switches Security Bypass Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Lenovo and IBM Networking Switches Security Bypass Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.