CVE-2018-9083

Publication date

2018-11-27 14:00:00

Family

lenovo

State

PUBLISHED

Description

In System Management Module (SMM) versions prior to 1.06, the SMM contains weak default root credentials which could be used to log in to the device OS -- if the attacker manages to enable SSH or Telnet connections via some other vulnerability.