Lenovo Chassis Management Module(CMM)是中国联想(Lenovo)公司的一款机箱管理模块,它主要用于管理和配置已安装的Lenovo Flex System组件。 Lenovo CMM 2.0.0之前版本中存在安全漏洞,该漏洞源于程序使用了硬编码加密密钥来保护敏感信息。攻击者可借助该密钥利用该漏洞解密受保护的敏感信息。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Lenovo | Chassis Management Module (CMM) | unspecified ~ 2.0.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2018-9071 | CMM Security Vulnerability | |
| CVE-2018-9085 | Missing System x Flash Memory Write Protection Lock Bit | |
| CVE-2018-9086 | Legacy Server BMC Remote Command Injection |
No comments yet