« Volver al listado

CVE-2017-3765

Estado: ModificadaAlta (7)—

In Enterprise Networking Operating System (ENOS) in Lenovo and IBM RackSwitch and BladeCenter products, an authentication bypass known as "HP Backdoor" was discovered during a Lenovo security audit in the serial console, Telnet, SSH, and Web interfaces. This bypass mechanism can be accessed when performing local authentication under specific circumstances. If exploited, admin-level access to the switch is granted.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2017-3765",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 6.2,
          "accessVector": "LOCAL",
          "vectorString": "AV:L/AC:H/Au:N/C:C/I:C/A:C",
          "authentication": "NONE",
          "integrityImpact": "COMPLETE",
          "accessComplexity": "HIGH",
          "availabilityImpact": "COMPLETE",
          "confidentialityImpact": "COMPLETE"
        },
        "acInsufInfo": false,
        "impactScore": 10,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": true,
        "exploitabilityScore": 1.9,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ],
    "cvssMetricV30": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.0",
          "baseScore": 7,
          "attackVector": "LOCAL",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "HIGH",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "LOW",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.9,
        "exploitabilityScore": 1
      }
    ]
  },
  "affected": [
    {
      "source": "psirt@lenovo.com",
      "affectedData": [
        {
          "vendor": "Lenovo Group Ltd.",
          "product": "Enterprise Network Operating System affecting Lenovo and IBM RackSwitch and BladeCenter Products",
          "versions": [
            {
              "status": "affected",
              "version": "Earlier than"
            }
          ]
        }
      ]
    }
  ],
  "published": "2018-01-10T18:29:01.383",
  "references": [
    {
      "url": "http://www.securitytracker.com/id/1040296",
      "tags": [
        "Third Party Advisory"
      ],
      "source": "psirt@lenovo.com"
    },
    {
      "url": "https://support.lenovo.com/us/en/product_security/LEN-16095",
      "tags": [
        "Mitigation",
        "Patch",
        "Vendor Advisory"
      ],
      "source": "psirt@lenovo.com"
    },
    {
      "url": "http://www.securitytracker.com/id/1040296",
      "tags": [
        "Third Party Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://support.lenovo.com/us/en/product_security/LEN-16095",
      "tags": [
        "Mitigation",
        "Patch",
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-287"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "In Enterprise Networking Operating System (ENOS) in Lenovo and IBM RackSwitch and BladeCenter products, an authentication bypass known as \"HP Backdoor\" was discovered during a Lenovo security audit in the serial console, Telnet, SSH, and Web interfaces. This bypass mechanism can be accessed when performing local authentication under specific circumstances. If exploited, admin-level access to the switch is granted."
    },
    {
      "lang": "es",
      "value": "En Enterprise Networking Operating System (ENOS) en productos Lenovo, IBM RackSwitch y BladeCenter, se descubrió una omisión de autenticación conocida como \"HP Backdoor\" durante una auditaría de seguridad de Lenovo en las interfaces de la consola de serie, Telnet, SSH y Web. Se puede acceder al mecanismo de omisión cuando se realiza una autenticación local bajo ciertas circunstancias. Si se explota, se concede el acceso a nivel de administrador al switch."
    }
  ],
  "lastModified": "2026-06-17T01:18:52.960",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:lenovo:enterprise_network_operating_system:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "0B6FA22A-0EB1-4062-9E3E-5BCE507AB21A",
              "versionEndExcluding": "8.4.6.0"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:lenovo:flex_system_fabric_cn4093_10gb_converged_scalable_switch:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "CD14D4A6-68F5-4B92-9D8D-4DC8496A39ED"
            },
            {
              "criteria": "cpe:2.3:h:lenovo:flex_system_fabric_en4093r_10gb_scalable_switch:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "C5195330-F644-4E3E-83B2-8890DB80734C"
            },
            {
              "criteria": "cpe:2.3:h:lenovo:flex_system_fabric_si4093_10gb_system_interconnect_module:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "8554C433-4DDA-4A39-B01E-441A4692FA92"
            },
            {
              "criteria": "cpe:2.3:h:lenovo:flex_system_si4091_system_interconnect_module:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "140910FE-22A3-47C2-9FC7-E3093C0761A3"
            },
            {
              "criteria": "cpe:2.3:h:lenovo:rackswitch_g7028:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "C8D163A9-605F-435C-870E-E28B386686F1"
            },
            {
              "criteria": "cpe:2.3:h:lenovo:rackswitch_g7052:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "CC6C0D57-16DE-470F-B707-F7A704BFA36C"
            },
            {
              "criteria": "cpe:2.3:h:lenovo:rackswitch_g8052:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "137C0A4F-A13B-4BFA-A323-3B8665C9EFA0"
            },
            {
              "criteria": "cpe:2.3:h:lenovo:rackswitch_g8124e:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "FD40C661-A1B6-4CA5-86AD-6901AFB65C8B"
            },
            {
              "criteria": "cpe:2.3:h:lenovo:rackswitch_g8264:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "58E04854-B986-400B-BB67-E2821C96E220"
            },
            {
              "criteria": "cpe:2.3:h:lenovo:rackswitch_g8264cs:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "5FD9C184-F542-4111-9617-C39BA1D75861"
            },
            {
              "criteria": "cpe:2.3:h:lenovo:rackswitch_g8272:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "DB8AF1A2-AC14-46E3-BCF1-41C48F0D45BA"
            },
            {
              "criteria": "cpe:2.3:h:lenovo:rackswitch_g8296:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "B3C14274-E752-4FCF-96DE-8EE02D07BB48"
            },
            {
              "criteria": "cpe:2.3:h:lenovo:rackswitch_g8332:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "B8D47782-1C9C-4C89-852C-637E09CB9E20"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:lenovo:enterprise_network_operating_system:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "0B6FA22A-0EB1-4062-9E3E-5BCE507AB21A",
              "versionEndExcluding": "8.4.6.0"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:ibm:1g_l2-7_slb_switch_for_bladecenter:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "554F09B6-E3E9-4614-8B09-83B3D9CB2DAC"
            },
            {
              "criteria": "cpe:2.3:h:ibm:bladecenter_1\\:10g_uplink_ethernet_switch_module:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "C516EA8F-AB20-41B0-8C73-320DC0E0D967"
            },
            {
              "criteria": "cpe:2.3:h:ibm:bladecenter_layer_2\\/3_copper_ethernet_switch_module:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "55112B25-5F9A-46D3-85E2-9BB3F3A38A04"
            },
            {
              "criteria": "cpe:2.3:h:ibm:bladecenter_virtual_fabric_10gb_switch_module:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "A248A49B-838D-481E-903D-B184E0550522"
            },
            {
              "criteria": "cpe:2.3:h:ibm:flex_system_en2092_1gb_ethernet_scalable_switch:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "A2FFDBDC-BC5B-4945-998B-EF7A84D05442"
            },
            {
              "criteria": "cpe:2.3:h:ibm:flex_system_fabric_cn4093_10gb_converged_scalable_switch:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "F62317AD-325B-43EE-BBEA-7577FFA0377B"
            },
            {
              "criteria": "cpe:2.3:h:ibm:flex_system_fabric_en4093\\/en4093r_10gb_scalable_switch:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "E6132020-30E0-4D5F-913B-71EB74AFDC94"
            },
            {
              "criteria": "cpe:2.3:h:ibm:flex_system_fabric_si4093_10gb_system_interconnect_module:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "75E66FEC-BDD9-4B51-8DCB-76377C92EDBD"
            },
            {
              "criteria": "cpe:2.3:h:ibm:rackswitch_g8052:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "7ADA45C1-84D8-44E4-8D53-D9E0A82E5890"
            },
            {
              "criteria": "cpe:2.3:h:ibm:rackswitch_g8124:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "96901ABF-A65F-4A07-892E-445C6AE170A1"
            },
            {
              "criteria": "cpe:2.3:h:ibm:rackswitch_g8124e:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "3DAD3932-2C0A-4F08-91E0-8C6744570A80"
            },
            {
              "criteria": "cpe:2.3:h:ibm:rackswitch_g8264:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "5F4D033F-5B82-4C4A-BD12-D6AF3D9986AD"
            },
            {
              "criteria": "cpe:2.3:h:ibm:rackswitch_g8264cs:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "11929E3F-DE7A-44AD-9111-A573C0EB9AD5"
            },
            {
              "criteria": "cpe:2.3:h:ibm:rackswitch_g8264t:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "19BC18A3-A42E-4231-8F1C-175A5F17DDD4"
            },
            {
              "criteria": "cpe:2.3:h:ibm:rackswitch_g8316:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "B26833BE-762B-4124-A3E1-CCE50E80D35C"
            },
            {
              "criteria": "cpe:2.3:h:ibm:rackswitch_g8332:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "C35153A7-35EF-4E95-B93B-FF38E7160336"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    }
  ],
  "sourceIdentifier": "psirt@lenovo.com"
}