CVE-2021-28205
ASUS BMC's firmware: path traversal - Delete SOL video file function
The specific function in ASUS BMC’s firmware Web management page (Delete SOL video file function) does not filter the specific parameter. As obtaining the administrator permission, remote attackers can use the means of path traversal to access system files.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Affected products
ASUS · BMC firmware for ASMB8-iKVMASUS · BMC firmware for Z10PE-D16 WSASUS · BMC firmware for Z10PR-D16Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →