CVE-2018-9083
11/27/2018
CVE-2018-9083
In System Management Module (SMM) versions prior to 1.06, the SMM contains weak default root credentials which could be used to log in to the device OS — if the attacker manages to enable SSH or Telnet connections via some other vulnerability.
References:
https://support.lenovo.com/us/en/solutions/LEN-24374
Don't forget to share