ID

VAR-201812-0624


CVE

CVE-2018-7112


TITLE

plural HPE Information disclosure vulnerabilities in products

Trust: 0.8

sources: JVNDB: JVNDB-2018-014231

DESCRIPTION

The HPE-provided Windows firmware installer for certain Gen9, Gen8, G7,and G6 HPE servers allows local disclosure of privileged information. This issue was resolved in previously provided firmware updates as follows. The HPE Windows firmware installer was updated in the system ROM updates which also addressed the original Spectre/Meltdown set of vulnerabilities. At that time, the Windows firmware installer was also updated in the versions of HPE Integrated Lights-Out 2, 3, and 4 (iLO 2, 3, and 4) listed in the security bulletin. The updated HPE Windows firmware installer was released in the system ROM and HPE Integrated Lights-Out (iLO) releases documented in earlier HPE Security Bulletins: HPESBHF03805, HPESBHF03835, HPESBHF03831. Windows-based systems that have already been updated to the system ROM or iLO versions described in these security bulletins require no further action. plural HPE The product contains an information disclosure vulnerability. Vendors report this vulnerability HPESBHF03805 , HPESBHF03835 , HPESBHF03831 Published as.Information may be obtained. HPE Integrated Lights-Out is a set of remote control solutions from Hewlett Packard Enterprise (HPE). This solution enables remote monitoring and operation and maintenance of IT assets such as servers. A local attacker could exploit this vulnerability to obtain sensitive information

Trust: 1.71

sources: NVD: CVE-2018-7112 // JVNDB: JVNDB-2018-014231 // VULHUB: VHN-137144

AFFECTED PRODUCTS

vendor:hpmodel:proliant dl580 gen8 serverscope:ltversion:2.00_02-22-2018

Trust: 1.0

vendor:hpmodel:integrated lights-out 3scope:ltversion:1.90

Trust: 1.0

vendor:hpmodel:proliant m510 server cartridgescope:ltversion:1.64_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant dl385p gen8 \scope:ltversion:2018.03.14

Trust: 1.0

vendor:hpmodel:proliant sl210t gen8 serverscope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant dl360 g7 serverscope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant dl380 g7 serverscope:eqversion: -

Trust: 1.0

vendor:hpmodel:proliant ml110 g7 serverscope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant m300 server cartridgescope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant ml370 g6 serverscope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant dl380p gen8 serverscope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant microserver gen8scope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant xl250a gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant ml350p gen8 serverscope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant sl270s gen8 serverscope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant dl80 gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant dl160 g6 serverscope:eqversion:*

Trust: 1.0

vendor:hpmodel:proliant dl360 g6 serverscope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant dl360p gen8 serverscope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant dl360 gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant dl380e gen8 serverscope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant sl4545 g7 server \scope:eqversion:2018.03.14\(a\)

Trust: 1.0

vendor:hpmodel:proliant dl180 g6 serverscope:eqversion:*

Trust: 1.0

vendor:hpmodel:proliant bl2x220c g6 server bladescope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant ml350 g6 serverscope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant xl740f gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant bl2x220c g7 server bladescope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant ml350e gen8 serverscope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant ml10 v2 serverscope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant dl180 gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant dl360e gen8 serverscope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant dl560 gen8 serverscope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant bl620c g7 server bladescope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant bl660c gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant dl20 gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant sl390s g7 serverscope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant dl120 g7 serverscope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant xl270d gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant dl585 g7 server \scope:ltversion:2018.03.14

Trust: 1.0

vendor:hpmodel:proliant dl580 g7 serverscope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant thin micro tm200 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant dl980 g7 serverscope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant sl170z g6 serverscope:eqversion:*

Trust: 1.0

vendor:hpmodel:proliant dl60 gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant bl685c g7 server blade \scope:ltversion:2018.03.14

Trust: 1.0

vendor:hpmodel:proliant bl465c gen8 \scope:ltversion:2018.03.14

Trust: 1.0

vendor:hpmodel:proliant dl120 gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant m710x server cartridgescope:ltversion:1.64_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant dl380 g6 serverscope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant sl250s gen8 serverscope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant xl190r gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant dl320e gen8 serverscope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant ml110 g6 serverscope:eqversion:*

Trust: 1.0

vendor:hpmodel:proliant ml350 gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant ml330 g6 serverscope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant xl730f gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant sl4540 gen8 1 node serverscope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant dl370 g6 serverscope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant bl460c gen8 server bladescope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant bl660c gen8 server bladescope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant dl160 gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant bl465c g7 server bladescope:ltversion:2018.03.14

Trust: 1.0

vendor:hpmodel:proliant ml150 g6 serverscope:eqversion:*

Trust: 1.0

vendor:hpmodel:proliant bl280c g6 server bladescope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant dl560 gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant dl380 gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant dl320 g6 serverscope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant bl460c gen9 server bladescope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant m710p server cartridgescope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant xl750f gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:integrated lights-out 2scope:ltversion:2.33

Trust: 1.0

vendor:hpmodel:proliant ml350e gen8 v2 serverscope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:integrated lights-out 4scope:ltversion:2.60

Trust: 1.0

vendor:hpmodel:proliant sl2x170z g6 serverscope:eqversion:*

Trust: 1.0

vendor:hpmodel:proliant dl320e gen8 v2 serverscope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant bl420c gen8 serverscope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant xl260a gen9 serverscope:ltversion:1.60_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant dl385 g7 serverscope:ltversion:2018.03.14

Trust: 1.0

vendor:hpmodel:proliant bl680c g7 server bladescope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant dl170e g6 serverscope:eqversion:*

Trust: 1.0

vendor:hpmodel:proliant ml310e gen8 v2 serverscope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant sl160s g6 serverscope:eqversion:*

Trust: 1.0

vendor:hpmodel:proliant ml30 gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant bl490c g6 server bladescope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant dl170h g6 serverscope:eqversion:*

Trust: 1.0

vendor:hpmodel:proliant ws460c gen9 workstationscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant xl170r gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant ml10 gen9 serverscope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant bl460c g7 server bladescope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant m710 server cartridgescope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant bl460c g6 server bladescope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant ml110 gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant ml310e gen8 serverscope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant xl450 gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant bl490c g7 server bladescope:ltversion:2018.05.21

Trust: 1.0

vendor:hpmodel:proliant xl230a gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant dl120 g6 serverscope:eqversion:*

Trust: 1.0

vendor:hpmodel:proliant m350 server cartridgescope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant ml150 gen9 serverscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hpmodel:proliant dl160 gen8 serverscope:ltversion:2018.01.22

Trust: 1.0

vendor:hpmodel:proliant xl270d gen9 accelerator trayscope:ltversion:2.56_01-22-2018

Trust: 1.0

vendor:hewlett packardmodel:hpe integrated lights-out 2scope: - version: -

Trust: 0.8

vendor:hewlett packardmodel:hpe integrated lights-out 3scope: - version: -

Trust: 0.8

vendor:hewlett packardmodel:hpe integrated lights-out 4scope: - version: -

Trust: 0.8

vendor:hewlett packardmodel:hpe proliant xl260a gen9 serverscope: - version: -

Trust: 0.8

vendor:hewlett packardmodel:hpe proliant xl270d gen9 accelerator trayscope: - version: -

Trust: 0.8

vendor:hewlett packardmodel:hpe proliant xl270d gen9 serverscope: - version: -

Trust: 0.8

vendor:hewlett packardmodel:hpe proliant xl450 gen9 serverscope: - version: -

Trust: 0.8

vendor:hewlett packardmodel:hpe proliant xl730f gen9 serverscope: - version: -

Trust: 0.8

vendor:hewlett packardmodel:hpe proliant xl740f gen9 serverscope: - version: -

Trust: 0.8

vendor:hewlett packardmodel:hpe proliant xl750f gen9 serverscope: - version: -

Trust: 0.8

sources: JVNDB: JVNDB-2018-014231 // NVD: CVE-2018-7112

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2018-7112
value: MEDIUM

Trust: 1.0

NVD: CVE-2018-7112
value: MEDIUM

Trust: 0.8

CNNVD: CNNVD-201810-1322
value: MEDIUM

Trust: 0.6

VULHUB: VHN-137144
value: MEDIUM

Trust: 0.1

nvd@nist.gov: CVE-2018-7112
severity: MEDIUM
baseScore: 4.9
vectorString: AV:L/AC:L/AU:N/C:C/I:N/A:N
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 3.9
impactScore: 6.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-137144
severity: MEDIUM
baseScore: 4.9
vectorString: AV:L/AC:L/AU:N/C:C/I:N/A:N
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 3.9
impactScore: 6.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

nvd@nist.gov: CVE-2018-7112
baseSeverity: MEDIUM
baseScore: 5.5
vectorString: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 1.8
impactScore: 3.6
version: 3.0

Trust: 1.8

sources: VULHUB: VHN-137144 // JVNDB: JVNDB-2018-014231 // CNNVD: CNNVD-201810-1322 // NVD: CVE-2018-7112

PROBLEMTYPE DATA

problemtype:NVD-CWE-noinfo

Trust: 1.0

problemtype:CWE-200

Trust: 0.9

sources: VULHUB: VHN-137144 // JVNDB: JVNDB-2018-014231 // NVD: CVE-2018-7112

THREAT TYPE

local

Trust: 0.6

sources: CNNVD: CNNVD-201810-1322

TYPE

information disclosure

Trust: 0.6

sources: CNNVD: CNNVD-201810-1322

CONFIGURATIONS

sources: JVNDB: JVNDB-2018-014231

PATCH

title:hpesbhf03805en_usurl:https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03805en_us

Trust: 0.8

title:hpesbhf03831en_usurl:https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03831en_us

Trust: 0.8

title:hpesbhf03835en_usurl:https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03835en_us

Trust: 0.8

title:hpesbhf03869en_usurl:https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03869en_us

Trust: 0.8

title:HPE Windows Firmware Security vulnerabilitiesurl:http://www.cnnvd.org.cn/web/xxk/bdxqById.tag?id=86389

Trust: 0.6

sources: JVNDB: JVNDB-2018-014231 // CNNVD: CNNVD-201810-1322

EXTERNAL IDS

db:NVDid:CVE-2018-7112

Trust: 2.5

db:SECTRACKid:1041984

Trust: 1.7

db:JVNDBid:JVNDB-2018-014231

Trust: 0.8

db:CNNVDid:CNNVD-201810-1322

Trust: 0.7

db:VULHUBid:VHN-137144

Trust: 0.1

sources: VULHUB: VHN-137144 // JVNDB: JVNDB-2018-014231 // CNNVD: CNNVD-201810-1322 // NVD: CVE-2018-7112

REFERENCES

url:http://www.securitytracker.com/id/1041984

Trust: 1.7

url:https://support.hpe.com/hpsc/doc/public/display?doclocale=en_us&docid=emr_na-hpesbhf03831en_us

Trust: 1.6

url:https://support.hpe.com/hpsc/doc/public/display?doclocale=en_us&docid=emr_na-hpesbhf03869en_us

Trust: 1.6

url:https://support.hpe.com/hpsc/doc/public/display?doclocale=en_us&docid=emr_na-hpesbhf03805en_us

Trust: 1.6

url:https://support.hpe.com/hpsc/doc/public/display?doclocale=en_us&docid=emr_na-hpesbhf03835en_us

Trust: 1.6

url:https://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2018-7112

Trust: 0.8

url:https://nvd.nist.gov/vuln/detail/cve-2018-7112

Trust: 0.8

url:https://support.hpe.com/hpsc/doc/public/display?doclocale=en_us&docid=emr_na-hpesbhf03805en_us

Trust: 0.1

url:https://support.hpe.com/hpsc/doc/public/display?doclocale=en_us&docid=emr_na-hpesbhf03831en_us

Trust: 0.1

url:https://support.hpe.com/hpsc/doc/public/display?doclocale=en_us&docid=emr_na-hpesbhf03835en_us

Trust: 0.1

url:https://support.hpe.com/hpsc/doc/public/display?doclocale=en_us&docid=emr_na-hpesbhf03869en_us

Trust: 0.1

sources: VULHUB: VHN-137144 // JVNDB: JVNDB-2018-014231 // CNNVD: CNNVD-201810-1322 // NVD: CVE-2018-7112

SOURCES

db:VULHUBid:VHN-137144
db:JVNDBid:JVNDB-2018-014231
db:CNNVDid:CNNVD-201810-1322
db:NVDid:CVE-2018-7112

LAST UPDATE DATE

2024-11-23T22:45:08.179000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-137144date:2020-08-24T00:00:00
db:JVNDBid:JVNDB-2018-014231date:2019-03-14T00:00:00
db:CNNVDid:CNNVD-201810-1322date:2020-08-25T00:00:00
db:NVDid:CVE-2018-7112date:2024-11-21T04:11:39.753

SOURCES RELEASE DATE

db:VULHUBid:VHN-137144date:2018-12-03T00:00:00
db:JVNDBid:JVNDB-2018-014231date:2019-03-14T00:00:00
db:CNNVDid:CNNVD-201810-1322date:2018-10-29T00:00:00
db:NVDid:CVE-2018-7112date:2018-12-03T15:29:00.383