CVE-2020-5633
Multiple NEC products (Express5800/T110j, Express5800/T110j-S, Express5800/T110j (2nd-Gen), Express5800/T110j-S (2nd-Gen), iStorage NS100Ti, and Express5800/GT110j) where Baseboard Management Controller (BMC) firmware Rev1.09 and earlier is applied allows remote attackers to bypass authentication and then obtain/modify BMC setting information, obtain monitoring information, or reboot/shut down the vulnerable product via unspecified vectors.
Published:Jan 13, 2021
Last Modified:Nov 21, 2024
EPS:Jan 13, 2021
EPSS Score:0.00979
CVSS Score:9.8
Affected Products
Vendor
Product
Action
Vendor
Nec
Product
Baseboard Management Controller
Nec
Baseboard Management Controller
Vendor
Nec
Product
Express5800\/gt110j
Nec
Express5800\/gt110j
Vendor
Nec
Product
Express5800\/t110j
Nec
Express5800\/t110j
Vendor
Nec
Product
Express5800\/t110j-s
Nec
Express5800\/t110j-s
Vendor
Nec
Product
Express5800\/t110j-s \(2nd-gen\)
Nec
Express5800\/t110j-s \(2nd-gen\)
Vendor
Nec
Product
Express5800\/t110j \(2nd-gen\)
Nec
Express5800\/t110j \(2nd-gen\)
Vendor
Nec
Product
Istorage Ns100ti
Nec
Istorage Ns100ti
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
