← volver
CVE-2018-16096

System Management Module Vulnerabilities

3Vexday Risk Score

Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.

ssvc Trackepss 0.6%
probabilidad de explotación
0.6%top 50% de las CVE
explotación observada
noninguna fuente lo reporta
In System Management Module (SMM) versions prior to 1.06, the SMM web interface for changing Enclosure VPD fails to sufficiently sanitize all input for HTML tags, possibly opening a path for cross-site scripting.
Productos afectados
Lenovo · ThinkSystem SMM