USBAnywhere - Remote BMC vulnerability

Notice: Page may contain affiliate links for which we may earn a small commission through services like Amazon Affiliates or Skimlinks.

mb300sd

Active Member
Aug 1, 2016
204
80
28
34
Always keep your BMCs in an isolated network.

But also interesting that it's capable of mounting any USB device and not just the built in virtual cdrom. I'd love for someone to make a 3rd party app to mount a USB drive image or even physical USB devices.
 

Patrick

Administrator
Staff member
Dec 21, 2010
12,513
5,805
113
They are doing a lot of these BMC vulnerabilities. They found a big one in the old Mergepoint that Gigabyte and Lenovo used to use maybe two months ago. I am holding off on publishing these when people say a BMC is connected via a public IP. The 47000 are simply from bad admins.
 
  • Like
Reactions: Samir